We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
A vulnerability was determined in LibTIFF up to 4.5.1. Affected by this issue is the function readSeparateStripsetoBuffer of the file tools/tiffcrop.c of the component tiffcrop. The manipulation leads to stack-based buffer overflow. Local access is required to approach this attack. The patch is identified as 8a7a48d7a645992ca83062b3a1873c951661e2b3. It is recommended to apply a patch to fix this issue.
Dies betrifft die Funktion readSeparateStripsetoBuffer der Datei tools/tiffcrop.c der Komponente tiffcrop. Durch Manipulieren mit unbekannten Daten kann eine stack-based buffer overflow-Schwachstelle ausgenutzt werden. Der Angriff muss lokal passieren. Der Patch wird als 8a7a48d7a645992ca83062b3a1873c951661e2b3 bezeichnet. Als bestmögliche Massnahme wird Patching empfohlen.
2025-08-10: | Advisory disclosed |
2025-08-10: | VulDB entry created |
2025-08-10: | VulDB entry last update |
arthurx (VulDB User)
vuldb.com/?id.319382 (VDB-319382 | LibTIFF tiffcrop tiffcrop.c readSeparateStripsetoBuffer stack-based overflow)
vuldb.com/?ctiid.319382 (VDB-319382 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.624604 (Submit #624604 | LibTIFF v4.5.1 Buffer Overflow)
gitlab.com/...ommit/8a7a48d7a645992ca83062b3a1873c951661e2b3
www.libtiff.org/
Support options