Security Advisory
CVE-2016-3620
7.5
HIGH
Vulnerability Description
The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.
Published Date
October 3, 2016
Official Source
NIST NVD Advisory