CVE-2016-3945 log
| Source | 
							
  | 
					
| Severity | High | 
| Remote | No | 
| Type | Arbitrary code execution | 
| Description | When libtiff's tiff2rgba handles a maliciously-crafted tiff file(width= 8388640, height=31) an illegal write happens. This vulnerability exists in the function cvt_by_strip (and cvt_by_tile ) due to an improper buffer allocation. An attacker may control the write address and/or value to result in denial-of-service or arbitrary code execution.  | 
					
| Group | Package | Affected | Fixed | Severity | Status | Ticket | 
|---|---|---|---|---|---|---|
| AVG-86 | lib32-libtiff | 4.0.6-2 | 4.0.7-1 | Critical | Fixed | |
| AVG-85 | libtiff | 4.0.6-2 | 4.0.7-1 | Critical | Fixed | 
| Date | Advisory | Group | Package | Severity | Type | 
|---|---|---|---|---|---|
| 25 Nov 2016 | ASA-201611-27 | AVG-86 | lib32-libtiff | Critical | multiple issues | 
| 25 Nov 2016 | ASA-201611-26 | AVG-85 | libtiff | Critical | multiple issues | 
| References | 
|---|
http://seclists.org/oss-sec/2016/q2/30 http://bugzilla.maptools.org/show_bug.cgi?id=2545  |