CVE-2004-1308 describes an integer overflow vulnerability in libtiff versions 3.5.7 and 3.7.0, specifically within tif_dirread.c and tif_fax3.c. This flaw allows remote attackers to execute arbitrary code by crafting a malicious TIFF file with a -1 entry count in TIFF_ASCII or TIFF_UNDEFINED directory entries, leading to a heap-based buffer overflow. The vulnerability carries a critical CVSS score of 10.0, indicating a severe risk with a network attack vector, low attack complexity, and complete compromise of confidentiality, integrity, and availability. Its high FAUCET Risk Score of 96/100 further emphasizes its potential impact. Despite its age, there is no evidence of active exploitation (KEV: No) and no readily available exploit code in Metasploit, Nuclei, or ExploitDB. However, the vulnerability garners significant community discussion with 11 mentions, suggesting continued awareness and interest.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.4CPE matchmatch criteria | cpe:2.3:a:libtiff:libtiff:3.4:*:*:*:*:*:*:* | ||
3.5.1CPE matchmatch criteria | cpe:2.3:a:libtiff:libtiff:3.5.1:*:*:*:*:*:*:* | ||
3.5.2CPE matchmatch criteria | cpe:2.3:a:libtiff:libtiff:3.5.2:*:*:*:*:*:*:* | ||
3.5.3CPE matchmatch criteria | cpe:2.3:a:libtiff:libtiff:3.5.3:*:*:*:*:*:*:* | ||
3.5.4CPE matchmatch criteria | cpe:2.3:a:libtiff:libtiff:3.5.4:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.