Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2025-314

A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcro...

JLSEC Published
Modified
Affected Packages
Libtiff_jll < 4.6.0+0
Aliases / Upstream
CVE-2023-3164

A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw allows attackers to cause a denial of service via a crafted tiff file.

References