Bug 1190444 - (CVE-2020-19144) VUL-1: CVE-2020-19144: tiff: Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the 'in _TIFFmemcpy' funtion in the component 'tif_unix.c'.
(CVE-2020-19144)
VUL-1: CVE-2020-19144: tiff: Buffer Overflow in LibTiff v4.0.10 allows attack...
Status: RESOLVED FIXED
Classification: Novell Products
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents
unspecified
Other Other
: P5 - None : Minor
: ---
Assigned To: Michael Vetter
Security Team bot
https://smash.suse.de/issue/309708/
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2021-09-13 14:08 UTC by Gabriele Sonnu
Modified: 2021-09-13 14:08 UTC (History)
1 user (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Gabriele Sonnu 2021-09-13 14:08:23 UTC
Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service
via the 'in _TIFFmemcpy' funtion in the component 'tif_unix.c'.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2020-19144
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-19144
http://bugzilla.maptools.org/show_bug.cgi?id=2852
Comment 1 Gabriele Sonnu 2021-09-13 14:08:43 UTC
SLE and openSUSE packages are not affected.