Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2025-253

_TIFFCheckMalloc and _TIFFCheckRealloc in tif_aux.c in LibTIFF through 4.0.10 mishandle Integer Over...

JLSEC Published
Modified
Affected Packages
Libtiff_jll < 4.1.0+0
Aliases / Upstream
CVE-2019-14973

TIFFCheckMalloc and _TIFFCheckRealloc in tifaux.c in LibTIFF through 4.0.10 mishandle Integer Overflow checks because they rely on compiler behavior that is undefined by the applicable C standards. This can, for example, lead to an application crash.

References