A NULL pointer dereference flaw was found in Libtiff's...
Moderate severity
Unreviewed
Published
May 18, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
May 17, 2023
Published to the GitHub Advisory Database
May 18, 2023
Last updated
Apr 4, 2024
A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to dereference a NULL pointer when decompressing a TIFF format file, resulting in a program crash or denial of service.
References