Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2025-254

tif_getimage.c in LibTIFF through 4.0.10, as used in GDAL through 3.0.1 and other products, has an i...

JLSEC Published
Modified
Affected Packages
Libtiff_jll < 4.1.0+0
Aliases / Upstream
CVE-2019-17546

tif_getimage.c in LibTIFF through 4.0.10, as used in GDAL through 3.0.1 and other products, has an integer overflow that potentially causes a heap-based buffer overflow via a crafted RGBA image, related to a "Negative-size-param" condition.

References