Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2025-275 Medium 6.5

A stack overflow was discovered in the `_TIFFVGetField` function of Tiffsplit v4.4.0

JLSEC Published
Modified
Severity
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Affected Packages
Libtiff_jll >= 4.4.0+0, < 4.5.1+0

A stack overflow was discovered in the _TIFFVGetField function of Tiffsplit v4.4.0. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted TIFF file parsed by the "tiffsplit" or "tiffcrop" utilities.

References