Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2025-258 High 7.8

A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's...

JLSEC Published
Modified
Severity
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected Packages
Libtiff_jll < 4.3.0+0

A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can lead to arbitrary code execution. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

References