CVE-2022-1354 log
| Source |
|
| Severity | Low |
| Remote | No |
| Type | Denial of service |
| Description | A heap buffer overflow flaw was found in Libtiffs' tiffinfo.c in TIFFReadRawDataStriped() function. This flaw allows an attacker to pass a crafted TIFF file to the tiffinfo tool, triggering a heap buffer overflow issue and causing a crash that leads to a denial of service. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-2721 | libtiff | 4.3.0-2 | Medium | Vulnerable | FS#74772 |
| References |
|---|
https://gitlab.com/libtiff/libtiff/-/issues/319 https://gitlab.com/libtiff/libtiff/-/commit/87f580f39011109b3bb5f6eca13fac543a542798 |