CVE-2023-26965: Use After Free
Last updated 24 July 2024
Other sources
LibTIFF is vulnerable to a denial of service, caused by a heap-based buffer overflow in the loadImage() function in /libtiff/tools/tiffcrop.c. By persuading a victim to open a specially crafted file, a remote attacker could exploit this vulnerability to cause a denial of service condition.
— IBM
loadImage() in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based use after free via a crafted TIFF image.
— Launchpad
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2023-26965.
What is the severity rating of CVE-2023-26965?
CVE-2023-26965 has a severity rating of 5.5, which is considered medium.
What is the affected software for CVE-2023-26965?
The affected software for CVE-2023-26965 includes LibTIFF versions up to and including 4.5.0, Debian package 'tiff' versions up to and including 4.5.0, and Libtiff versions up to and including 4.5.0.
How can I fix CVE-2023-26965?
To fix CVE-2023-26965, update to LibTIFF version 4.5.1 or later, Debian package 'tiff' version 4.5.1 or later, or Libtiff version 4.5.1 or later.
Where can I find more information about CVE-2023-26965?
You can find more information about CVE-2023-26965 at the following references: [Reference 1](https://gitlab.com/libtiff/libtiff/-/merge_requests/472), [Reference 2](https://security.netapp.com/advisory/ntap-20230706-0009/), [Reference 3](https://lists.debian.org/debian-lts-announce/2023/07/msg00034.html).