You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The TIFF decoder does not place a limit on the size of compressed tile data. A maliciously-crafted image can exploit this to cause a small image (both in terms of pixel width/height, and encodes size) make the decoder decode large amounts of compressed data, consuming excessive memory and CPU.
Thanks to Philippe Antoine (Catena cyber) for reporting this issue.
neild
changed the title
security: fix CVE-2023-29408
x/image: lack of limits on compressed tile data [CVE-2023-29408]
Aug 1, 2023
dmitshur
changed the title
x/image: lack of limits on compressed tile data [CVE-2023-29408]
x/image/tiff: lack of limits on compressed tile data [CVE-2023-29408]
Aug 2, 2023
The TIFF decoder does not place a limit on the size of compressed tile data. A maliciously-crafted image can exploit this to cause a small image (both in terms of pixel width/height, and encodes size) make the decoder decode large amounts of compressed data, consuming excessive memory and CPU.
Thanks to Philippe Antoine (Catena cyber) for reporting this issue.
This is CVE-2023-29408.
This is a PRIVATE issue for CVE-2023-29408, tracked in http://b/279482083 and fixed by http://tg/1944079.
/cc @golang/security and @golang/release
The text was updated successfully, but these errors were encountered: