Количество 42
Количество 42
GHSA-gvgc-3ch5-px8p
A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.
ELSA-2025-20034-0
ELSA-2025-20034-0: libtiff security update (IMPORTANT)
BDU:2025-13919
Уязвимость функции get_histogram библиотеки LibTIFF, позволяющая нарушителю выполнить произвольный код
SUSE-SU-2025:3961-1
Security update for tiff
SUSE-SU-2025:3941-1
Security update for tiff
RLSA-2025:19156
Important: libtiff security update
RLSA-2025:17675
Important: compat-libtiff3 security update
GHSA-qc8j-wvjf-7jfj
A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.
ELSA-2025-20998
ELSA-2025-20998: libtiff security update (IMPORTANT)
ELSA-2025-19276
ELSA-2025-19276: libtiff security update (IMPORTANT)
ELSA-2025-19156
ELSA-2025-19156: libtiff security update (IMPORTANT)
ELSA-2025-17710
ELSA-2025-17710: compat-libtiff3 security update (IMPORTANT)
ELSA-2025-17675
ELSA-2025-17675: compat-libtiff3 security update (IMPORTANT)
BDU:2025-13921
Уязвимость библиотеки LibTIFF, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю выполнить произвольный код на целевой системе
SUSE-SU-2025:02815-1
Security update for tiff
SUSE-SU-2025:02771-1
Security update for tiff
SUSE-SU-2025:02770-1
Security update for tiff
SUSE-SU-2025:3957-1
Security update for tiff
ALT-PU-2025-13034
ALT-PU-2025-13034: package `libtiff` update to version 4.4.0-alt9
ALT-PU-2025-12867
ALT-PU-2025-12867: package `libtiff5` update to version 4.4.0-alt9
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-gvgc-3ch5-px8p A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue. | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
ELSA-2025-20034-0 ELSA-2025-20034-0: libtiff security update (IMPORTANT) | 0% Низкий | 11 месяцев назад | ||
BDU:2025-13919 Уязвимость функции get_histogram библиотеки LibTIFF, позволяющая нарушителю выполнить произвольный код | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
SUSE-SU-2025:3961-1 Security update for tiff | 1% Низкий | 11 месяцев назад | ||
SUSE-SU-2025:3941-1 Security update for tiff | 1% Низкий | 11 месяцев назад | ||
RLSA-2025:19156 Important: libtiff security update | 1% Низкий | 11 месяцев назад | ||
RLSA-2025:17675 Important: compat-libtiff3 security update | 1% Низкий | 12 месяцев назад | ||
GHSA-qc8j-wvjf-7jfj A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user. | CVSS3: 8.8 | 1% Низкий | около 1 года назад | |
ELSA-2025-20998 ELSA-2025-20998: libtiff security update (IMPORTANT) | 1% Низкий | 10 месяцев назад | ||
ELSA-2025-19276 ELSA-2025-19276: libtiff security update (IMPORTANT) | 1% Низкий | 11 месяцев назад | ||
ELSA-2025-19156 ELSA-2025-19156: libtiff security update (IMPORTANT) | 1% Низкий | 11 месяцев назад | ||
ELSA-2025-17710 ELSA-2025-17710: compat-libtiff3 security update (IMPORTANT) | 1% Низкий | 11 месяцев назад | ||
ELSA-2025-17675 ELSA-2025-17675: compat-libtiff3 security update (IMPORTANT) | 1% Низкий | 12 месяцев назад | ||
BDU:2025-13921 Уязвимость библиотеки LibTIFF, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю выполнить произвольный код на целевой системе | CVSS3: 8.8 | 1% Низкий | около 1 года назад | |
SUSE-SU-2025:02815-1 Security update for tiff | около 1 года назад | |||
SUSE-SU-2025:02771-1 Security update for tiff | около 1 года назад | |||
SUSE-SU-2025:02770-1 Security update for tiff | около 1 года назад | |||
SUSE-SU-2025:3957-1 Security update for tiff | 11 месяцев назад | |||
ALT-PU-2025-13034 ALT-PU-2025-13034: package `libtiff` update to version 4.4.0-alt9 | CVSS3: 8.8 | 1% Низкий | 11 месяцев назад | |
ALT-PU-2025-12867 ALT-PU-2025-12867: package `libtiff5` update to version 4.4.0-alt9 | CVSS3: 8.8 | 1% Низкий | 12 месяцев назад |
Уязвимостей на страницу