CVE-2010-2630
MEDIUM 4.3EPSS 5.0%
The TIFFReadDirectory function in LibTIFF 3.9.0 does not properly validate the data types of codec-specific tags that have an out-of-order position in a TIFF file, which allows remote attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2010-2481.
- CVSS v2.0
- 4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P - EPSS
- 4.95% chance of exploitation in the next 30 days, 92th percentile
- Published
- 2010-07-06
- Updated
- 2024-08-07