CVE-2012-4447

Heap-based buffer overflow in tif_pixarlog.c in LibTIFF before 4.0.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted TIFF image using the PixarLog Compression format.

Date published : 2012-10-28

http://www.securityfocus.com/bid/55673

http://www.debian.org/security/2012/dsa-2561