Libtiff

Libtiff

265 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.12%
  • Veröffentlicht 19.06.2023 12:15:09
  • Zuletzt bearbeitet 03.11.2025 21:15:59

A NULL pointer dereference in TIFFClose() is caused by a failure to open an output file (non-existent path or a path that requires permissions like /dev/null) while specifying zones.

Exploit
  • EPSS 0.38%
  • Veröffentlicht 14.06.2023 21:15:09
  • Zuletzt bearbeitet 03.11.2025 21:15:56

loadImage() in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based use after free via a crafted TIFF image.

Exploit
  • EPSS 0.84%
  • Veröffentlicht 14.06.2023 20:15:09
  • Zuletzt bearbeitet 06.01.2025 17:15:11

libtiff 4.5.0 is vulnerable to Buffer Overflow via extractContigSamplesBytes() at /libtiff/tools/tiffcrop.c:3215.

Exploit
  • EPSS 0.51%
  • Veröffentlicht 19.05.2023 15:15:08
  • Zuletzt bearbeitet 14.03.2025 19:09:26

A vulnerability was found in the libtiff library. This flaw causes a heap buffer overflow issue via the TIFFTAG_INKNAMES and TIFFTAG_NUMBEROFINKS values.

  • EPSS 0.3%
  • Veröffentlicht 19.05.2023 15:15:08
  • Zuletzt bearbeitet 21.01.2025 18:15:13

A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSamples32bits, tiffcrop.c.

Exploit
  • EPSS 0.43%
  • Veröffentlicht 17.05.2023 22:15:11
  • Zuletzt bearbeitet 22.01.2025 19:15:09

A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to dereference a NULL pointer when decompressing a TI...

Exploit
  • EPSS 0.31%
  • Veröffentlicht 09.05.2023 16:15:14
  • Zuletzt bearbeitet 09.07.2026 01:18:16

Buffer Overflow vulnerability found in Libtiff V.4.0.7 allows a local attacker to cause a denial of service via the tiffcp function in tiffcp.c.

Exploit
  • EPSS 0.39%
  • Veröffentlicht 10.04.2023 22:15:09
  • Zuletzt bearbeitet 21.11.2024 07:40:08

A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of-bounds read in the extractImageSection function in tools/tiffcrop.c, resulting in a denial of service and limited informat...

Exploit
  • EPSS 0.43%
  • Veröffentlicht 03.03.2023 16:15:09
  • Zuletzt bearbeitet 04.04.2025 21:15:42

LibTIFF 4.4.0 has an out-of-bounds read in tiffcp in tools/tiffcp.c:948, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit e8131125.

Exploit
  • EPSS 0.42%
  • Veröffentlicht 13.02.2023 23:15:12
  • Zuletzt bearbeitet 21.03.2025 19:15:41

LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3400, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.