Логотип exploitDog
bind:"CVE-2025-8176" OR bind:"CVE-2025-9900"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-8176" OR bind:"CVE-2025-9900"

Количество 36

Количество 36

rocky логотип

RLSA-2025:19113

2 месяца назад

Important: libtiff security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-20956

около 2 месяцев назад

ELSA-2025-20956: libtiff security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-19906

2 месяца назад

ELSA-2025-19906: mingw-libtiff security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-19113

3 месяца назад

ELSA-2025-19113: libtiff security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-21407

около 2 месяцев назад

ELSA-2025-21407: libtiff security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20049-1

около 2 месяцев назад

Security update for tiff

EPSS: Низкий
ubuntu логотип

CVE-2025-8176

6 месяцев назад

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2025-8176

6 месяцев назад

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-8176

6 месяцев назад

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2025-8176

4 месяца назад

LibTIFF tiffmedian.c get_histogram use after free

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-8176

6 месяцев назад

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2025-9900

4 месяца назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2025-9900

4 месяца назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2025-9900

4 месяца назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2025-9900

4 месяца назад

Libtiff: libtiff write-what-where

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-9900

4 месяца назад

A flaw was found in Libtiff. This vulnerability is a "write-what-where ...

CVSS3: 8.8
EPSS: Низкий
redos логотип

ROS-20251105-02

2 месяца назад

Множественные уязвимости libtiff

CVSS3: 8.8
EPSS: Низкий
rocky логотип

RLSA-2025:20034

2 месяца назад

Important: libtiff security update

EPSS: Низкий
github логотип

GHSA-gvgc-3ch5-px8p

6 месяцев назад

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
EPSS: Низкий
oracle-oval логотип

ELSA-2025-20034-0

2 месяца назад

ELSA-2025-20034-0: libtiff security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2025:19113

Important: libtiff security update

2 месяца назад
oracle-oval логотип
ELSA-2025-20956

ELSA-2025-20956: libtiff security update (IMPORTANT)

около 2 месяцев назад
oracle-oval логотип
ELSA-2025-19906

ELSA-2025-19906: mingw-libtiff security update (IMPORTANT)

2 месяца назад
oracle-oval логотип
ELSA-2025-19113

ELSA-2025-19113: libtiff security update (IMPORTANT)

3 месяца назад
oracle-oval логотип
ELSA-2025-21407

ELSA-2025-21407: libtiff security update (IMPORTANT)

около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2025:20049-1

Security update for tiff

около 2 месяцев назад
ubuntu логотип
CVE-2025-8176

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2025-8176

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2025-8176

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-8176

LibTIFF tiffmedian.c get_histogram use after free

CVSS3: 5.3
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-8176

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared ...

CVSS3: 5.3
0%
Низкий
6 месяцев назад
ubuntu логотип
CVE-2025-9900

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
0%
Низкий
4 месяца назад
redhat логотип
CVE-2025-9900

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-9900

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

CVSS3: 8.8
0%
Низкий
4 месяца назад
msrc логотип
CVE-2025-9900

Libtiff: libtiff write-what-where

CVSS3: 8.8
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-9900

A flaw was found in Libtiff. This vulnerability is a "write-what-where ...

CVSS3: 8.8
0%
Низкий
4 месяца назад
redos логотип
ROS-20251105-02

Множественные уязвимости libtiff

CVSS3: 8.8
2 месяца назад
rocky логотип
RLSA-2025:20034

Important: libtiff security update

0%
Низкий
2 месяца назад
github логотип
GHSA-gvgc-3ch5-px8p

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2025-20034-0

ELSA-2025-20034-0: libtiff security update (IMPORTANT)

2 месяца назад

Уязвимостей на страницу