Heap Buffer Over-read in LibTIFF Affects GraphicsMagick
CVE-2018-5360
8.8HIGH
What is CVE-2018-5360?
An issue in LibTIFF versions prior to 4.0.6 can lead to heap-based buffer over-read when processing TIFF image files in GraphicsMagick 1.3.27. This flaw, located in the ReadTIFFImage function within the coders/tiff.c source file, may allow an attacker to exploit applications that utilize affected versions of these libraries, potentially leading to unauthorized access to sensitive data.