tiff vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the tiff package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
Out-of-bounds Write

*
  • H
Out-of-bounds Write

<4.1.0+git191117-2~deb10u9
  • L
Resource Exhaustion

*
  • L
Out-of-bounds Write

*
  • M
Memory Leak

<4.1.0+git191117-2~deb10u9
  • M
Integer Overflow or Wraparound

<4.1.0+git191117-2~deb10u8
  • M
Integer Overflow or Wraparound

<4.1.0+git191117-2~deb10u8
  • M
Out-of-bounds Write

<4.0.10+git190814-1
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Buffer Overflow

<4.1.0+git191117-2~deb10u8
  • M
Buffer Overflow

<4.1.0+git191117-2~deb10u8
  • M
NULL Pointer Dereference

<4.1.0+git191117-2~deb10u8
  • M
Buffer Overflow

<4.1.0+git191117-2~deb10u8
  • H
Buffer Overflow

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u8
  • M
Buffer Overflow

<4.1.0+git191117-2~deb10u7
  • M
NULL Pointer Dereference

<4.1.0+git191117-2~deb10u8
  • L
Out-of-bounds Write

*
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u5
  • L
Out-of-bounds Write

*
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u5
  • L
Out-of-bounds Read

*
  • M
Out-of-bounds Read

<4.1.0+git191117-2~deb10u5
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Read

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Read

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Read

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u7
  • M
Use After Free

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Read

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u7
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u6
  • H
Numeric Errors

<4.1.0+git191117-2~deb10u5
  • M
Out-of-bounds Read

<4.1.0+git191117-2~deb10u5
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u5
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u5
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u5
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u5
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u5
  • L
Release of Invalid Pointer or Reference

*
  • L
Incorrect Calculation of Buffer Size

*
  • L
Double Free

*
  • L
Out-of-bounds Read

*
  • M
Improper Validation of Specified Quantity in Input

<4.1.0+git191117-2~deb10u5
  • M
Integer Underflow

<4.1.0+git191117-2~deb10u5
  • M
Integer Underflow

<4.1.0+git191117-2~deb10u5
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u5
  • M
Divide By Zero

<4.1.0+git191117-2~deb10u5
  • M
Divide By Zero

<4.1.0+git191117-2~deb10u5
  • M
Divide By Zero

<4.1.0+git191117-2~deb10u5
  • M
Stack-based Buffer Overflow

<4.1.0+git191117-2~deb10u5
  • M
Out-of-bounds Read

<4.1.0+git191117-2~deb10u5
  • L
Improper Resource Shutdown or Release

*
  • L
Out-of-bounds Read

*
  • M
Out-of-bounds Read

<4.1.0+git191117-2~deb10u4
  • M
Divide By Zero

<4.1.0+git191117-2~deb10u4
  • M
NULL Pointer Dereference

<4.1.0+git191117-2~deb10u4
  • M
Unchecked Return Value

<4.1.0+git191117-2~deb10u4
  • H
Out-of-bounds Write

<4.1.0+git191117-2~deb10u4
  • M
Reachable Assertion

<4.1.0+git191117-2~deb10u4
  • M
NULL Pointer Dereference

<4.1.0+git191117-2~deb10u4
  • M
NULL Pointer Dereference

<4.1.0+git191117-2~deb10u4
  • M
Out-of-bounds Read

<4.1.0+git191117-2~deb10u4
  • M
Out-of-bounds Write

<4.1.0+git191117-2~deb10u3
  • M
Out-of-bounds Write

<4.0.10+git190814-1
  • H
Out-of-bounds Write

<4.0.10+git190814-1
  • L
Out-of-Bounds

*
  • L
Out-of-Bounds

*
  • H
Out-of-Bounds

<4.1.0+git191117-2~deb10u2
  • H
Integer Overflow or Wraparound

<4.1.0+git191117-2~deb10u2
  • H
Out-of-bounds Write

<4.1.0+git191117-2~deb10u1
  • M
Integer Overflow or Wraparound

<4.1.0+git191117-2~deb10u1
  • M
CVE-2019-7663

<4.0.10-4
  • L
Memory Leak

<4.0.10-4
  • M
NULL Pointer Dereference

<4.0.10-4
  • L
NULL Pointer Dereference

<4.0.10-1
  • H
Out-of-bounds Write

<4.0.9+git181026-1
  • H
Out-of-bounds Write

<4.0.9-2
  • M
NULL Pointer Dereference

<4.0.10-4
  • H
Out-of-bounds Write

<4.0.9+git181026-1
  • H
Out-of-bounds Write

<4.0.9-5
  • L
Integer Overflow or Wraparound

<4.0.9+git181026-1
  • H
Out-of-bounds Write

<4.0.9-5
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Out-of-bounds Write

<4.0.3-12.3
  • H
Out-of-bounds Write

<4.0.10-4
  • M
Reachable Assertion

<4.0.9-6
  • M
Missing Release of Resource after Effective Lifetime

<4.0.6-3
  • M
Out-of-bounds Read

<4.0.6-3
  • L
NULL Pointer Dereference

*
  • H
Out-of-bounds Write

<4.0.9-6
  • H
Out-of-bounds Write

<4.0.3-12.1
  • L
Divide By Zero

<4.0.5-1
  • H
Out-of-bounds Write

<4.0.6-2
  • M
NULL Pointer Dereference

<4.0.9-5
  • M
Resource Exhaustion

<4.0.9-4
  • H
Out-of-bounds Read

<4.0.6-3
  • M
NULL Pointer Dereference

<4.0.9-3
  • L
Use After Free

*
  • L
Out-of-bounds Read

<4.0.6-3
  • L
Out-of-Bounds

<4.0.9-5
  • M
Reachable Assertion

<4.0.8-5
  • M
Reachable Assertion

<4.0.8-5
  • H
Allocation of Resources Without Limits or Throttling

<4.0.8-6
  • L
Improper Input Validation

<4.0.9-5
  • H
Out-of-bounds Write

<4.0.8-4
  • H
Improper Input Validation

<4.0.8-3
  • L
Out-of-bounds Read

<4.0.6-3
  • M
Missing Release of Resource after Effective Lifetime

<4.0.8-3
  • H
Out-of-bounds Read

<4.0.9-2
  • M
Missing Release of Resource after Effective Lifetime

<4.0.8-1
  • M
Missing Release of Resource after Effective Lifetime

<4.0.8-1
  • M
Missing Release of Resource after Effective Lifetime

<4.0.8-1
  • M
Out-of-bounds Read

<4.0.8-2
  • L
Out-of-bounds Read

*
  • L
Improper Input Validation

<4.0.7-7
  • M
Out-of-bounds Read

<4.0.7-1
  • L
Divide By Zero

<4.0.7-6
  • H
Improper Input Validation

<4.0.7-6
  • H
Improper Input Validation

<4.0.7-6
  • H
Improper Input Validation

<4.0.7-6
  • H
Improper Input Validation

<4.0.7-6
  • H
Improper Input Validation

<4.0.7-6
  • M
Out-of-Bounds

<4.0.7-6
  • L
Divide By Zero

<4.0.7-6
  • H
Integer Overflow or Wraparound

<4.0.7-6
  • H
Improper Input Validation

<4.0.7-6
  • L
Missing Release of Resource after Effective Lifetime

<4.0.7-6
  • H
Out-of-bounds Read

<4.0.7-2
  • H
Out-of-Bounds

<4.0.7-2
  • H
Out-of-bounds Read

<4.0.7-2
  • H
Out-of-Bounds

<4.0.7-2
  • L
Integer Underflow

<4.0.7-2
  • M
Divide By Zero

<4.0.7-2
  • M
Divide By Zero

<4.0.7-2
  • M
Resource Management Errors

<4.0.7-1
  • M
Out-of-bounds Read

<4.0.6-2
  • H
Numeric Errors

<4.0.7-4
  • H
Out-of-Bounds

<4.0.7-2
  • M
Out-of-Bounds

<4.0.8-2
  • H
Out-of-Bounds

<4.0.7-2
  • M
Improper Input Validation

<4.0.6-3
  • M
Out-of-bounds Read

<4.0.7-1
  • H
Out-of-bounds Write

<4.0.6-3
  • C
Numeric Errors

<4.0.6-2
  • L
Out-of-bounds Read

*
  • M
Out-of-Bounds

<4.0.6-2
  • L
Divide By Zero

<4.0.6-2
  • M
Out-of-Bounds

<4.0.6-3
  • M
Out-of-Bounds

<4.0.6-3
  • M
Out-of-bounds Read

<4.0.6-2
  • M
Out-of-Bounds

<4.0.6-2
  • H
Out-of-bounds Read

<4.0.7-1
  • M
Out-of-bounds Read

<4.0.7-1
  • C
Out-of-Bounds

<4.0.7-5
  • H
Out-of-Bounds

<4.0.6-3
  • H
Improper Input Validation

<4.0.3-12
  • C
Out-of-Bounds

<4.0.7-1
  • C
Out-of-Bounds

<4.0.7-1
  • L
Out-of-Bounds

<4.0.7-1
  • C
Integer Overflow or Wraparound

<4.0.7-1
  • C
Out-of-Bounds

<4.0.7-1
  • C
Out-of-Bounds

<4.0.7-1
  • C
Out-of-Bounds

<4.0.7-1
  • C
Out-of-Bounds

<4.0.7-1
  • H
CVE-2016-8331

<4.0.6-3
  • L
Divide By Zero

<4.0.7-1
  • L
Divide By Zero

<4.0.6-3
  • H
Out-of-bounds Read

<4.0.6-3
  • L
Out-of-bounds Read

<4.0.6-3
  • L
Out-of-bounds Read

<4.0.6-3
  • L
Out-of-bounds Read

<4.0.6-3
  • H
Out-of-bounds Read

<4.0.6-3
  • L
Out-of-bounds Read

<4.0.6-3
  • H
Out-of-bounds Read

<4.0.6-3
  • H
Out-of-bounds Write

<4.0.6-3
  • M
Out-of-bounds Read

<4.0.3-1
  • H
Out-of-Bounds

<4.0.7-1
  • H
Out-of-bounds Write

<4.0.7-1
  • H
Out-of-Bounds

<4.0.7-1
  • H
Out-of-bounds Write

<4.0.6-3
  • M
Out-of-Bounds

<4.0.6-3
  • M
Out-of-Bounds

<4.0.6-1
  • M
Out-of-Bounds

<4.0.6-1
  • M
Out-of-Bounds

<4.0.3-12.1
  • M
Out-of-Bounds

<4.0.3-12.1
  • M
Out-of-bounds Write

<4.0.6-1
  • M
Out-of-bounds Write

<4.0.6-1
  • M
Out-of-bounds Write

<4.0.6-1
  • M
Out-of-bounds Read

<4.0.6-1
  • C
Out-of-Bounds

<4.0.6-3
  • C
Security Features

<4.0.7-7
  • M
Numeric Errors

<4.0.3-12
  • M
Out-of-Bounds

<4.0.3-2
  • M
Out-of-Bounds

<4.0.3-3
  • L
Out-of-Bounds

<4.0.3-9
  • M
Resource Management Errors

<4.0.3-2
  • H
Out-of-Bounds

<4.0.2-6+nmu1
  • H
Out-of-Bounds

<4.0.2-6+nmu1
  • M
Out-of-Bounds

<4.0.2-1
  • M
CVE-2012-4564

<4.0.2-5
  • M
Out-of-Bounds

<4.0.2-4
  • M
Out-of-Bounds

<4.0.2-2
  • H
Numeric Errors

<4.0-1
  • M
Numeric Errors

<4.0.2-1
  • M
Numeric Errors

<4.0.1-2
  • M
Out-of-Bounds

<3.9.5-1
  • M
Out-of-Bounds

<3.9.4-9
  • H
Out-of-Bounds

<3.9.4-1
  • H
Out-of-Bounds

<3.9.4-7
  • M
Out-of-Bounds

<3.9.4-5
  • M
Improper Input Validation

<3.9.6-1
  • L
CVE-2010-2482

<3.9.4-1
  • L
Out-of-Bounds

<3.9.4-4
  • L
Out-of-Bounds

<3.9.4-1
  • M
Improper Input Validation

<3.9.4-1
  • H
Improper Input Validation

<3.9.4-2
  • L
Improper Input Validation

<4.0.6-1
  • M
Improper Input Validation

<3.9.4-1
  • M
Improper Input Validation

<3.9.6-1
  • M
Improper Input Validation

<3.9.6-1
  • L
CVE-2010-2443

<3.9.4-1
  • M
Out-of-Bounds

<3.9.4-1
  • M
Numeric Errors

<3.9.4-1
  • M
Numeric Errors

<3.9.4-1
  • H
Numeric Errors

<3.8.2-13
  • L
Out-of-Bounds

<3.8.2-12
  • M
Out-of-Bounds

<3.8.2-11
  • H
Out-of-Bounds

<3.8.2-6
  • H
CVE-2006-3465

<3.8.2-6
  • H
Out-of-Bounds

<3.8.2-6
  • H
Numeric Errors

<3.8.2-6
  • H
Out-of-Bounds

<3.8.2-6
  • H
Out-of-Bounds

<3.8.2-6
  • H
CVE-2006-3461

<3.8.2-6
  • M
CVE-2006-2193

<3.8.2-4
  • L
Out-of-Bounds

<3.8.2-3
  • M
CVE-2006-2120

<3.8.1
  • M
Out-of-Bounds

<3.8.1
  • M
CVE-2006-2025

<3.8.1
  • M
CVE-2006-2024

<3.8.1
  • M
CVE-2006-0405

<3.8.0-2
  • M
CVE-2005-2452

<3.7.0-1
  • H
CVE-2005-1544

<3.7.2-3
  • M
CVE-2004-0886

<3.6.1-2
  • C
CVE-2004-1308

<3.6.1-4
  • M
CVE-2004-1183

<3.6.1-5
  • H
CVE-2004-0803

<3.6.1-2
  • L
CVE-2004-1307

<3.7.0
  • M
Divide By Zero

<3.6.1-2