CVE-2006-3459

Publication date 3 August 2006

Last updated 24 July 2024


Ubuntu priority

Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and other products, allow context-dependent attackers to execute arbitrary code or cause a denial of service via unspecified vectors, including a large tdir_count value in the TIFFFetchShortPair function in tif_dirread.c.

Status

Package Ubuntu Release Status
tiff 7.04 feisty
Fixed 3.8.2-6
6.10 edgy
Fixed 3.8.2-6
6.06 LTS dapper
Fixed 3.7.4-1ubuntu3.2

References

Related Ubuntu Security Notices (USN)

    • USN-330-1
    • tiff vulnerabilities
    • 3 August 2006

Other references