First published: Thu Jun 08 2023(Updated: )
A heap-buffer-overflow in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. Reference: <a href="https://gitlab.com/libtiff/libtiff/-/issues/542">https://gitlab.com/libtiff/libtiff/-/issues/542</a>
Affected Software | Affected Version | How to fix |
---|---|---|
libtiff |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-2213531 is classified as a critical vulnerability due to the risk of heap-buffer-overflow.
To mitigate REDHAT-BUG-2213531, upgrade to the latest version of the Libtiff library where the issue is resolved.
The vulnerability REDHAT-BUG-2213531 affects all configurations that utilize Libtiff without the latest security patches.
As of now, there is no public knowledge regarding an active exploit specifically targeting REDHAT-BUG-2213531.
REDHAT-BUG-2213531 involves a heap-buffer-overflow in the extractImageSection function within the Libtiff library.