CyberRota
Live Feed
Return to register
Case File

CVE-2012-3401

MEDIUM · CVSS 6.8 EPSS 4.07%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-08-13 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2012-3401
Severity
MEDIUM
CVSS
6.8
EPSS
4.07%

Original Filing — NVD Description

The t2p_read_tiff_init function in tiff2pdf (tools/tiff2pdf.c) in LibTIFF 4.0.2 and earlier does not properly initialize the T2P context struct pointer in certain error conditions, which allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TIFF image that triggers a heap-based buffer overflow.