FreeBSD : tiff -- denial of service (42ecf370-4aa4-11e6-a7bd-14dae9d210b8)

medium Nessus Plugin ID 92341

Synopsis

The remote FreeBSD host is missing a security-related update.

Description

Aladdin Mubaied reports :

Buffer-overflow in gif2tiff utility

Solution

Update the affected package.

See Also

https://bugzilla.redhat.com/show_bug.cgi?id=1319503

https://bugzilla.redhat.com/show_bug.cgi?id=1319666

http://www.openwall.com/lists/oss-security/2016/03/30/2

http://www.nessus.org/u?41abed2a

Plugin Details

Severity: Medium

ID: 92341

File Name: freebsd_pkg_42ecf3704aa411e6a7bd14dae9d210b8.nasl

Version: 2.2

Type: local

Published: 7/18/2016

Updated: 1/4/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.6

CVSS v2

Risk Factor: Medium

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:tiff, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 7/15/2016

Vulnerability Publication Date: 3/20/2016

Reference Information

CVE: CVE-2016-3186