CVE-2026-52491: Integer Overflow
Published Aug 25, 2026
·Updated
An issue in libtiff 85f2ac8e0b01cb7db2bbecf4a3b891bdbef67938 allows an attacker to execute arbitrary code via the libtiff/tools/thumbnail.c: main() component
Affected Software
1 affected component
libtiff=85f2ac8e0b01cb7db2bbecf4a3b891bdbef67938
Event History
Aug 25, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:17 PM
DescriptionSeverityWeakness
Aug 29, 2026
Data Sourced
via Microsoft·08:08 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which source revision is identified as affected?
The issue identifies libtiff revision 85f2ac8e0b01cb7db2bbecf4a3b891bdbef67938. No release or package version information is provided.
2
Is a fixed version specified?
No fixed version is specified in the available data. A libtiff commit reference is provided, but the data does not explicitly state which released versions include that change.
3
What deployment or configuration details are known to affect exposure?
The available data does not state whether the affected functionality is enabled by default, which environments invoke it, or what attacker access is required.