blob: 751b6fbd7eb9a113f97f31682c1083e475acb50c [file] [log] [blame]
"dataType": "CVE_RECORD",
"dataVersion": "5.0",
"cveMetadata": {
"cveId": "CVE-2023-29408"
"containers": {
"cna": {
"providerMetadata": {
"orgId": "1bb62c36-49e3-4200-9d77-64a1400537cc"
"title": "Excessive resource consumption in",
"descriptions": [
"lang": "en",
"value": "The TIFF decoder does not place a limit on the size of compressed tile data. A maliciously-crafted image can exploit this to cause a small image (both in terms of pixel width/height, and encoded size) to make the decoder decode large amounts of compressed data, consuming excessive memory and CPU."
"affected": [
"vendor": "",
"product": "",
"collectionURL": "",
"packageName": "",
"versions": [
"version": "0",
"lessThan": "0.10.0",
"status": "affected",
"versionType": "semver"
"programRoutines": [
"name": "newDecoder"
"name": "Decode"
"name": "DecodeConfig"
"defaultStatus": "unaffected"
"problemTypes": [
"descriptions": [
"lang": "en",
"description": "CWE-770: Allocation of Resources Without Limits or Throttling"
"references": [
"url": ""
"url": ""
"url": ""
"url": ""
"url": ""
"url": ""
"url": ""
"credits": [
"lang": "en",
"value": "Philippe Antoine (Catena cyber)"