CVE-2016-3945 describes multiple integer overflows in the tiff2rgba tool within LibTIFF versions 4.0.6 and earlier, specifically impacting the cvt_by_strip and cvt_by_tile functions when -b mode is enabled. This vulnerability, affecting products like libtiff and Oracle VM Server, carries a CVSS v3 score of 7.8 (HIGH), indicating a local attack vector with low complexity, requiring user interaction, and potentially leading to a denial of service (crash) or arbitrary code execution due to an out-of-bounds write. Despite its high severity, there is no evidence of active exploitation, no known public exploit code (Metasploit, Nuclei, ExploitDB), and minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 4.0.6CPE matchmatch criteria | cpe:2.3:a:libtiff:libtiff:*:*:*:*:*:*:*:* | ||
3.3CPE matchmatch criteria | cpe:2.3:o:oracle:vm_server:3.3:*:*:*:*:*:x86:* | ||
3.4CPE matchmatch criteria | cpe:2.3:o:oracle:vm_server:3.4:*:*:*:*:*:x86:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.