Description
LibTIFF 4.4.0 has an out-of-bounds read in writeSingleSection in tools/tiffcrop.c:7345, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit e8131125.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3278-1 | tiff security update |
Debian DSA |
DSA-5333-1 | tiff security update |
EUVD |
EUVD-2022-42963 | LibTIFF 4.4.0 has an out-of-bounds read in writeSingleSection in tools/tiffcrop.c:7345, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit e8131125. |
Ubuntu USN |
USN-5714-1 | LibTIFF vulnerabilities |
References
History
Wed, 07 May 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2025-05-07T20:34:32.205Z
Reserved: 2022-10-19T00:00:00.000Z
Link: CVE-2022-3599
Updated: 2024-08-03T01:14:02.344Z
Status : Modified
Published: 2022-10-21T16:15:11.087
Modified: 2025-05-07T21:15:56.903
Link: CVE-2022-3599
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD
Ubuntu USN