THREATOPS
THREAT OPSThreat News › [NVD] CVE-2023-52355 (HIGH 7.5) — An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of service via a crafted input with a size smaller than 379 KB.

[NVD] CVE-2023-52355 (HIGH 7.5) — An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of service via a crafted input with a size smaller than 379 KB.

lownvdPublished 2024-01-25

CVE-2023-52355 CVSS: 7.5 HIGH Published: 2024-01-25T20:15:38.353

An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of service via a crafted input with a size smaller than 379 KB.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2023-52355