CVE-2025-61144: Buffer Overflow
Last updated 19 August 2026
Other sources
libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function.
— MITRE
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/tiffto a version that resolves this vulnerability.Fixed in 4.7.2-1
Event History
Frequently Asked Questions
What is the severity of CVE-2025-61144?
CVE-2025-61144 is classified as a high severity vulnerability due to its potential to cause a stack overflow.
How do I fix CVE-2025-61144?
To mitigate CVE-2025-61144, upgrade libtiff to version 4.7.2 or later, which contains the necessary patches.
What software versions are affected by CVE-2025-61144?
CVE-2025-61144 affects libtiff versions up to and including 4.7.1.
What specific function is vulnerable in CVE-2025-61144?
The vulnerable function in CVE-2025-61144 is readSeparateStripsIntoBuffer.
How can CVE-2025-61144 impact my system?
CVE-2025-61144 can lead to a stack overflow, potentially allowing an attacker to execute arbitrary code on the affected system.