Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 15

Количество 15

ubuntu логотип

CVE-2025-9165

около 1 года назад

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tiffcmp.c of the component tiffcmp. Executing manipulation can lead to memory leak. The attack is restricted to local execution. This attack is characterized by high complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. There is ongoing doubt regarding the real existence of this vulnerability. This patch is called ed141286a37f6e5ddafb5069347ff5d587e7a4e0. It is best practice to apply a patch to resolve this issue. A researcher disputes the security impact of this issue, because "this is a memory leak on a command line tool that is about to exit anyway". In the reply the project maintainer declares this issue as "a simple 'bug' when leaving the command line tool and (...) not a security issue at all".

CVSS3: 2.5
EPSS: Низкий
redhat логотип

CVE-2025-9165

около 1 года назад

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tiffcmp.c of the component tiffcmp. Executing manipulation can lead to memory leak. The attack is restricted to local execution. This attack is characterized by high complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. There is ongoing doubt regarding the real existence of this vulnerability. This patch is called ed141286a37f6e5ddafb5069347ff5d587e7a4e0. It is best practice to apply a patch to resolve this issue. A researcher disputes the security impact of this issue, because "this is a memory leak on a command line tool that is about to exit anyway". In the reply the project maintainer declares this issue as "a simple 'bug' when leaving the command line tool and (...) not a security issue at all".

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2025-9165

около 1 года назад

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tiffcmp.c of the component tiffcmp. Executing manipulation can lead to memory leak. The attack is restricted to local execution. This attack is characterized by high complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. There is ongoing doubt regarding the real existence of this vulnerability. This patch is called ed141286a37f6e5ddafb5069347ff5d587e7a4e0. It is best practice to apply a patch to resolve this issue. A researcher disputes the security impact of this issue, because "this is a memory leak on a command line tool that is about to exit anyway". In the reply the project maintainer declares this issue as "a simple 'bug' when leaving the command line tool and (...) not a security issue at all".

CVSS3: 2.5
EPSS: Низкий
msrc логотип

CVE-2025-9165

около 1 года назад

LibTIFF tiffcmp tiffcmp.c InitCCITTFax3 memory leak

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2025-9165

около 1 года назад

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIF ...

CVSS3: 2.5
EPSS: Низкий
github логотип

GHSA-64vg-6m9q-6vr3

около 1 года назад

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tiffcmp.c of the component tiffcmp. Executing manipulation can lead to memory leak. The attack is restricted to local execution. The exploit has been published and may be used. This patch is called ed141286a37f6e5ddafb5069347ff5d587e7a4e0. It is best practice to apply a patch to resolve this issue.

CVSS3: 3.3
EPSS: Низкий
fstec логотип

BDU:2025-12470

около 1 года назад

Уязвимость компонента tiffcmp библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 3.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03346-1

около 1 года назад

Security update for tiff

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03345-1

около 1 года назад

Security update for tiff

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03348-1

около 1 года назад

Security update for tiff

EPSS: Низкий
altlinux логотип

ALT-PU-2025-11483

около 1 года назад

ALT-PU-2025-11483: package `libtiff` update to version 4.4.0-alt7

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20049-1

10 месяцев назад

Security update for tiff

EPSS: Низкий
altlinux логотип

ALT-PU-2025-11213

около 1 года назад

ALT-PU-2025-11213: package `libtiff5` update to version 4.4.0-alt7

CVSS3: 7.8
EPSS: Низкий
redos логотип

ROS-20251105-02

11 месяцев назад

Множественные уязвимости libtiff

CVSS3: 8.8
EPSS: Низкий
altlinux логотип

ALT-PU-2025-11954

12 месяцев назад

ALT-PU-2025-11954: package `libtiff` update to version 4.7.1-alt1

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-9165

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tiffcmp.c of the component tiffcmp. Executing manipulation can lead to memory leak. The attack is restricted to local execution. This attack is characterized by high complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. There is ongoing doubt regarding the real existence of this vulnerability. This patch is called ed141286a37f6e5ddafb5069347ff5d587e7a4e0. It is best practice to apply a patch to resolve this issue. A researcher disputes the security impact of this issue, because "this is a memory leak on a command line tool that is about to exit anyway". In the reply the project maintainer declares this issue as "a simple 'bug' when leaving the command line tool and (...) not a security issue at all".

CVSS3: 2.5
0%
Низкий
около 1 года назад
redhat логотип
CVE-2025-9165

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tiffcmp.c of the component tiffcmp. Executing manipulation can lead to memory leak. The attack is restricted to local execution. This attack is characterized by high complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. There is ongoing doubt regarding the real existence of this vulnerability. This patch is called ed141286a37f6e5ddafb5069347ff5d587e7a4e0. It is best practice to apply a patch to resolve this issue. A researcher disputes the security impact of this issue, because "this is a memory leak on a command line tool that is about to exit anyway". In the reply the project maintainer declares this issue as "a simple 'bug' when leaving the command line tool and (...) not a security issue at all".

CVSS3: 3.3
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-9165

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tiffcmp.c of the component tiffcmp. Executing manipulation can lead to memory leak. The attack is restricted to local execution. This attack is characterized by high complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. There is ongoing doubt regarding the real existence of this vulnerability. This patch is called ed141286a37f6e5ddafb5069347ff5d587e7a4e0. It is best practice to apply a patch to resolve this issue. A researcher disputes the security impact of this issue, because "this is a memory leak on a command line tool that is about to exit anyway". In the reply the project maintainer declares this issue as "a simple 'bug' when leaving the command line tool and (...) not a security issue at all".

CVSS3: 2.5
0%
Низкий
около 1 года назад
msrc логотип
CVE-2025-9165

LibTIFF tiffcmp tiffcmp.c InitCCITTFax3 memory leak

CVSS3: 5.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-9165

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIF ...

CVSS3: 2.5
0%
Низкий
около 1 года назад
github логотип
GHSA-64vg-6m9q-6vr3

A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tiffcmp.c of the component tiffcmp. Executing manipulation can lead to memory leak. The attack is restricted to local execution. The exploit has been published and may be used. This patch is called ed141286a37f6e5ddafb5069347ff5d587e7a4e0. It is best practice to apply a patch to resolve this issue.

CVSS3: 3.3
0%
Низкий
около 1 года назад
fstec логотип
BDU:2025-12470

Уязвимость компонента tiffcmp библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 3.3
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:03346-1

Security update for tiff

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:03345-1

Security update for tiff

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:03348-1

Security update for tiff

около 1 года назад
altlinux логотип
ALT-PU-2025-11483

ALT-PU-2025-11483: package `libtiff` update to version 4.4.0-alt7

CVSS3: 5.3
около 1 года назад
suse-cvrf логотип
openSUSE-SU-2025:20049-1

Security update for tiff

10 месяцев назад
altlinux логотип
ALT-PU-2025-11213

ALT-PU-2025-11213: package `libtiff5` update to version 4.4.0-alt7

CVSS3: 7.8
около 1 года назад
redos логотип
ROS-20251105-02

Множественные уязвимости libtiff

CVSS3: 8.8
11 месяцев назад
altlinux логотип
ALT-PU-2025-11954

ALT-PU-2025-11954: package `libtiff` update to version 4.7.1-alt1

CVSS3: 8.8
12 месяцев назад

Уязвимостей на страницу