Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-9900

Опубликовано: 22 сент. 2025
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

Отчет

This attack requires user interaction to run the malicious TIFF image file, hence the CVE is maintained as important.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libtiffOut of support scope
Red Hat Enterprise Linux 10libtiffFixedRHSA-2025:1915628.10.2025
Red Hat Enterprise Linux 10libtiffFixedRHSA-2025:2099811.11.2025
Red Hat Enterprise Linux 7 Extended Lifecycle Supportcompat-libtiff3FixedRHSA-2025:1771009.10.2025
Red Hat Enterprise Linux 7 Extended Lifecycle SupportlibtiffFixedRHSA-2025:2140717.11.2025
Red Hat Enterprise Linux 8compat-libtiff3FixedRHSA-2025:1767509.10.2025
Red Hat Enterprise Linux 8libtiffFixedRHSA-2025:1927629.10.2025
Red Hat Enterprise Linux 8mingw-libtiffFixedRHSA-2025:1990606.11.2025
Red Hat Enterprise Linux 8.2 Advanced Update Supportcompat-libtiff3FixedRHSA-2025:1773813.10.2025
Red Hat Enterprise Linux 8.2 Advanced Update SupportlibtiffFixedRHSA-2025:2106212.11.2025

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-123

EPSS

Процентиль: 11%
0.00036
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
6 месяцев назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
nvd
6 месяцев назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
msrc
6 месяцев назад

Libtiff: libtiff write-what-where

CVSS3: 8.8
debian
6 месяцев назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where ...

suse-cvrf
5 месяцев назад

Security update for tiff

EPSS

Процентиль: 11%
0.00036
Низкий

8.8 High

CVSS3