LibTIFF 4.0.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted TIFF image, related to libtiff/tif_read.c:351:22.
[
{
"deprecated": false,
"source": "https://github.com/vadz/libtiff/commit/438274f938e046d33cb0e1230b41da32ffe223e1",
"id": "CVE-2016-10266-2a8be726",
"signature_version": "v1",
"target": {
"function": "TIFFReadEncodedStrip",
"file": "libtiff/tif_read.c"
},
"signature_type": "Function",
"digest": {
"function_hash": "95289772340925132901433210107058266675",
"length": 1659.0
}
},
{
"deprecated": false,
"source": "https://github.com/vadz/libtiff/commit/438274f938e046d33cb0e1230b41da32ffe223e1",
"id": "CVE-2016-10266-4185b16b",
"signature_version": "v1",
"target": {
"file": "libtiff/tif_read.c"
},
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"71289599255262108927450975493486636001",
"156569818982261594818137525569489152396",
"266369424637384864147080326243819405387",
"243370623434666644801256186703384266304"
]
}
},
{
"deprecated": false,
"source": "https://github.com/vadz/libtiff/commit/438274f938e046d33cb0e1230b41da32ffe223e1",
"id": "CVE-2016-10266-98f33003",
"signature_version": "v1",
"target": {
"file": "libtiff/tiffiop.h"
},
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"166811669549390486631947738790670416738",
"176841608881356365712446516781855674545",
"260175778907837296966133128714850313219",
"215829977390104788064075275263259845239"
]
}
}
]