Описание
An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image
A flaw was found in libtiff. An integer overflow vulnerability exists in the cvtRaster() function of the rgb2ycbcr utility. When processing a specially crafted TIFF image during YCbCr conversion, an attacker could trigger an undersized heap allocation, leading to a heap-based buffer overflow. This could potentially allow for arbitrary code execution.
Меры по смягчению последствий
To mitigate this issue, avoid processing untrusted or maliciously crafted TIFF images with the rgb2ycbcr utility. Users should exercise caution when handling TIFF files from unknown or suspicious sources.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | libtiff | Affected | ||
| Red Hat Enterprise Linux 6 | libtiff | Out of support scope | ||
| Red Hat Enterprise Linux 7 | compat-libtiff3 | Not affected | ||
| Red Hat Enterprise Linux 7 | libtiff | Affected | ||
| Red Hat Enterprise Linux 8 | compat-libtiff3 | Not affected | ||
| Red Hat Enterprise Linux 8 | libtiff | Not affected | ||
| Red Hat Enterprise Linux 8 | mingw-libtiff | Affected | ||
| Red Hat Enterprise Linux 9 | libtiff | Not affected | ||
| Red Hat Hardened Images | boost | Not affected | ||
| Red Hat Hardened Images | libtiff-main-4.7.2-2.hum1 | Fixed | RHSA-2026:53467 | 11.08.2026 |
Показывать по
Дополнительная информация
Статус:
EPSS
7.3 High
CVSS3
Связанные уязвимости
An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image
An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image
An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image
An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() fun ...
An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image
EPSS
7.3 High
CVSS3