{"affected":[{"ecosystem_specific":{"binaries":[{"libtiff5":"4.0.9-44.10.1","libtiff5-32bit":"4.0.9-44.10.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Desktop 12 SP3","name":"tiff","purl":"pkg:rpm/suse/tiff&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.9-44.10.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libtiff-devel":"4.0.9-44.10.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Software Development Kit 12 SP3","name":"tiff","purl":"pkg:rpm/suse/tiff&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.9-44.10.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libtiff5":"4.0.9-44.10.1","libtiff5-32bit":"4.0.9-44.10.1","tiff":"4.0.9-44.10.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP3","name":"tiff","purl":"pkg:rpm/suse/tiff&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.9-44.10.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libtiff5":"4.0.9-44.10.1","libtiff5-32bit":"4.0.9-44.10.1","tiff":"4.0.9-44.10.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP3","name":"tiff","purl":"pkg:rpm/suse/tiff&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.9-44.10.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for tiff fixes the following issues:\n\n- CVE-2017-9935: There was a heap-based buffer overflow in the t2p_write_pdf function in tools/tiff2pdf.c. This heap overflow could lead to different damages. For example, a crafted TIFF document can lead to an out-of-bounds read in TIFFCleanup, an invalid free in TIFFClose or t2p_free, memory corruption in t2p_readwrite_pdf_image, or a double free in t2p_free. Given these possibilities, it probably could cause arbitrary code execution (bsc#1046077)\n- CVE-2017-17973: There is a heap-based use-after-free in the t2p_writeproc function in tiff2pdf.c. (bsc#1074318)\n- CVE-2018-5784: There is an uncontrolled resource consumption in the TIFFSetDirectory function of tif_dir.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted tif file. This occurs because the declared number of directory entries is not validated against the actual number of directory entries (bsc#1081690)\n\n","id":"SUSE-SU-2018:1180-1","modified":"2018-05-09T12:01:44Z","published":"2018-05-09T12:01:44Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2018/suse-su-20181180-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1046077"},{"type":"REPORT","url":"https://bugzilla.suse.com/1074318"},{"type":"REPORT","url":"https://bugzilla.suse.com/1081690"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2017-17973"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2017-9935"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-5784"}],"related":["CVE-2017-17973","CVE-2017-9935","CVE-2018-5784"],"summary":"Security update for tiff","upstream":["CVE-2017-17973","CVE-2017-9935","CVE-2018-5784"]}