FreeBSD : tiff -- denial of service (42ecf370-4aa4-11e6-a7bd-14dae9d210b8)

Medium Nessus Plugin ID 92341

Synopsis

The remote FreeBSD host is missing a security-related update.

Description

Aladdin Mubaied reports :

Buffer-overflow in gif2tiff utility

Solution

Update the affected package.

See Also

https://bugzilla.redhat.com/show_bug.cgi?id=1319503

https://bugzilla.redhat.com/show_bug.cgi?id=1319666

http://www.openwall.com/lists/oss-security/2016/03/30/2

http://www.nessus.org/u?41abed2a

Plugin Details

Severity: Medium

ID: 92341

File Name: freebsd_pkg_42ecf3704aa411e6a7bd14dae9d210b8.nasl

Version: Revision: 2.1

Type: local

Published: 2016/07/18

Updated: 2016/07/18

Dependencies: 12634

Risk Information

Risk Factor: Medium

CVSS v2.0

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:tiff, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 2016/07/15

Vulnerability Publication Date: 2016/03/20

Reference Information

CVE: CVE-2016-3186