Stack-based buffer overflow in the t2p_write_pdf_page function in tiff2pdf in libtiff before 4.0.3 allows remote attackers to cause a denial of service (application crash) via a crafted image length and resolution in a TIFF image file.Referenceshttp://secunia.com/advisories/53237http://lists.fedoraproject.org/pipermail/package-announce/2013-May/105253.htmlhttp://www.debian.org/security/2013/dsa-2698http://secunia.com/advisories/53765http://lists.opensuse.org/opensuse-updates/2013-06/msg00080.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=952131http://rhn.redhat.com/errata/RHSA-2014-0223.htmlhttp://seclists.org/oss-sec/2013/q2/254http://lists.fedoraproject.org/pipermail/package-announce/2013-May/105828.htmlhttp://www.securityfocus.com/bid/59607http://lists.opensuse.org/opensuse-updates/2013-06/msg00058.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-May/104916.html