Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c22p-2vpj-rh5j

Опубликовано: 24 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image

An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image

EPSS

Процентиль: 3%
0.0013
Низкий

7.8 High

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 7.8
ubuntu
14 дней назад

An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image

CVSS3: 7.3
redhat
14 дней назад

An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image

CVSS3: 7.8
nvd
14 дней назад

An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image

msrc
11 дней назад

An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image

CVSS3: 7.8
debian
14 дней назад

An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() fun ...

EPSS

Процентиль: 3%
0.0013
Низкий

7.8 High

CVSS3

Дефекты

CWE-190