Description
A weakness has been identified in LibTIFF 4.7.0. This affects the function main of the file tiffcrop.c of the component tiffcrop. Executing manipulation can lead to memory corruption. The attack can only be executed locally. The exploit has been made available to the public and could be exploited.
In LibTIFF 4.7.0 ist eine Schwachstelle entdeckt worden. Davon betroffen ist die Funktion main der Datei tiffcrop.c der Komponente tiffcrop. Die Bearbeitung verursacht memory corruption. Der Angriff muss lokal durchgeführt werden. Der Exploit steht zur öffentlichen Verfügung.
Problem types
Timeline
2025-08-13: | Advisory disclosed |
2025-08-13: | VulDB entry created |
2025-08-23: | VulDB entry last update |
Credits
ucas-xd (VulDB User)
References
vuldb.com/?id.319955 (VDB-319955 | LibTIFF tiffcrop tiffcrop.c main memory corruption)
vuldb.com/?ctiid.319955 (VDB-319955 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.627957 (Submit #627957 | libtiff tiffcrop 4.7.0 (the newest master) Segmentation Fault)
gitlab.com/libtiff/libtiff/-/issues/721
gitlab.com/libtiff/libtiff/-/issues/721
drive.google.com/...X3Aj3z6SWC3_FbqaM1ChUx2/view?usp=sharing
www.libtiff.org/