Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://www.remotesensing.org/libtiff/v3.9.3.html
http://support.apple.com/kb/HT4196
http://www.vuxml.org/freebsd/313da7dc-763b-11df-bcce-0018f3e2eb82.html
Insight
The following packages are affected:
tiff
linux-tiff
CVE-2010-1411
Multiple integer overflows in the Fax3SetupState function in tif_fax3.c in the FAX3 decoder in LibTIFF before 3.9.3, as used in ImageIO in Apple Mac OS X 10.5.8 and Mac OS X 10.6 before 10.6.4, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted TIFF file that triggers a heap-based buffer overflow.
Severity
Classification
-
CVE CVE-2010-1411 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities