CVE-2023-1560

Source
https://cve.org/CVERecord?id=CVE-2023-1560
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-1560.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-1560
Published
2023-03-22T11:31:04Z
Modified
2026-08-12T03:51:23Z
Severity
  • 2.8 (Low) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L CVSS Calculator
Summary
TinyTIFF File tinytiffreader.c buffer overflow
Details

A vulnerability, which was classified as problematic, has been found in TinyTIFF 3.0.0.0. This issue affects some unknown processing of the file tinytiffreader.c of the component File Handler. The manipulation leads to buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The identifier VDB-223553 was assigned to this vulnerability.

Database specific
{
    "cna_assigner": "VulDB",
    "cwe_ids": [
        "CWE-120"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/1xxx/CVE-2023-1560.json",
    "unresolved_ranges": [
        {
            "extracted_events": [
                {
                    "introduced": "3.0.0.0"
                },
                {
                    "last_affected": "3.0.0.0"
                }
            ],
            "source": "AFFECTED_FIELD"
        }
    ]
}
References

Affected packages

Git / github.com/jkriege2/tinytiff

Affected ranges

Type
GIT
Repo
https://github.com/jkriege2/tinytiff
Events
Database specific
Show details
{
    "cpe": "cpe:2.3:a:tinytiff_project:tinytiff:3.0.0.0:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "3.0.0.0"
        },
        {
            "last_affected": "3.0.0.0"
        }
    ],
    "source": "CPE_STRING"
}

Affected versions

3.*
3.0.0.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-1560.json"