Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-19276

Опубликовано: 29 окт. 2025
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2025-19276: libtiff security update (IMPORTANT)

[4.0.9-35]

  • fix CVE-2025-9900: buffer underflow crash in TIFFReadRGBAImageOriented() (RHEL-112533)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

libtiff

4.0.9-35.el8_10

libtiff-devel

4.0.9-35.el8_10

libtiff-tools

4.0.9-35.el8_10

Oracle Linux x86_64

libtiff

4.0.9-35.el8_10

libtiff-devel

4.0.9-35.el8_10

libtiff-tools

4.0.9-35.el8_10

Связанные CVE

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 1 месяца назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
redhat
около 1 месяца назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
nvd
около 1 месяца назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
msrc
около 1 месяца назад

Libtiff: libtiff write-what-where

CVSS3: 8.8
debian
около 1 месяца назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where ...