F5 Networks BIG-IP : LibTIFF vulnerability (K24923910)
Medium Nessus Plugin ID 100181
SynopsisThe remote device is missing a vendor-supplied security patch.
DescriptionThe _TIFFVGetField function in tif_dirinfo.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) or execute arbitrary code via a crafted TIFF image. (CVE-2016-3632)
SolutionUpgrade to one of the non-vulnerable versions listed in the F5 Solution K24923910.