peter bassill · operator
$ cve CVE-2018-18557 JSON

CVE-2018-18557 EXPLOIT

8.8
HIGH · CVSS 3.0 · EPSS 15% (pctl 97)

Patch early

A public exploit exists.

Description

LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6, 4.0.7, 4.0.8 and 4.0.9 (with JBIG enabled) decodes arbitrarily-sized JBIG into a buffer, ignoring the buffer size, which leads to a tif_jbig.c JBIGDecode out-of-bounds write.

Scoring

CVSS8.8 (HIGH, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS14.96% — more likely to be exploited than 97% of all CVEs
WeaknessCWE-787
On CISA KEVno
Public exploityes
Published2018-10-22
Last modified2026-06-17

Affected (3)

VendorProduct
canonicalubuntu linux
debiandebian linux
libtifflibtiff

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD