Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-7081

Опубликовано: 08 апр. 2026
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2026-7081: libtiff security update (MODERATE)

[4.6.0-6.2]

  • fix CVE-2023-52356: libtiff could crash in TIFFReadRGBATileExt when parsing crafted tiff file (RHEL-148254)

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

libtiff

4.6.0-6.el10_1.2

libtiff-devel

4.6.0-6.el10_1.2

libtiff-tools

4.6.0-6.el10_1.2

Oracle Linux x86_64

libtiff

4.6.0-6.el10_1.2

libtiff-devel

4.6.0-6.el10_1.2

libtiff-tools

4.6.0-6.el10_1.2

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw allows a remote attacker to cause a heap-buffer overflow, leading to a denial of service.

CVSS3: 7.5
redhat
больше 2 лет назад

A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw allows a remote attacker to cause a heap-buffer overflow, leading to a denial of service.

CVSS3: 7.5
nvd
больше 2 лет назад

A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw allows a remote attacker to cause a heap-buffer overflow, leading to a denial of service.

CVSS3: 7.5
msrc
почти 2 года назад

Libtiff: segment fault in libtiff in tiffreadrgbatileext() leading to denial of service

CVSS3: 7.5
debian
больше 2 лет назад

A segment fault (SEGV) flaw was found in libtiff that could be trigger ...