A heap buffer overflow in ExtractImageSection function in tiffcrop.c in libtiff library Version 4.3.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into application crash, potential information disclosure or any other context-dependent impact
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-5108-1 | tiff security update |
EUVD |
EUVD-2022-15927 | A heap buffer overflow in ExtractImageSection function in tiffcrop.c in libtiff library Version 4.3.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into application crash, potential information disclosure or any other context-dependent impact |
Ubuntu USN |
USN-5421-1 | LibTIFF vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2024-08-02T23:47:42.151Z
Reserved: 2022-03-09T00:00:00
Link: CVE-2022-0891
No data.
Status : Modified
Published: 2022-03-10T17:44:58.207
Modified: 2024-11-21T06:39:36.610
Link: CVE-2022-0891
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN