First published: Wed Jun 14 2023(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libtiff Libtiff | <=4.5.0 | |
debian/tiff | <=4.2.0-1+deb11u5<=4.5.0-6+deb12u1 | 4.5.1+git230720-5 |
IBM Cognos Analytics | <=12.0.0-12.0.3 | |
IBM Cognos Analytics | <=11.2.0-11.2.4 FP4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2023-26965.
CVE-2023-26965 has a severity rating of 5.5, which is considered medium.
The affected software for CVE-2023-26965 includes LibTIFF versions up to and including 4.5.0, Debian package 'tiff' versions up to and including 4.5.0, and Libtiff versions up to and including 4.5.0.
To fix CVE-2023-26965, update to LibTIFF version 4.5.1 or later, Debian package 'tiff' version 4.5.1 or later, or Libtiff version 4.5.1 or later.
You can find more information about CVE-2023-26965 at the following references: [Reference 1](https://gitlab.com/libtiff/libtiff/-/merge_requests/472), [Reference 2](https://security.netapp.com/advisory/ntap-20230706-0009/), [Reference 3](https://lists.debian.org/debian-lts-announce/2023/07/msg00034.html).