Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2025-258

A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's T...

JLSEC Published
Modified
Affected Packages
Libtiff_jll < 4.3.0+0
Aliases / Upstream
CVE-2020-35524

A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can lead to arbitrary code execution. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

References