CVE-2022-1354 log
| Source | 
 | 
| Severity | Low | 
| Remote | No | 
| Type | Denial of service | 
| Description | A heap buffer overflow flaw was found in Libtiffs' tiffinfo.c in TIFFReadRawDataStriped() function. This flaw allows an attacker to pass a crafted TIFF file to the tiffinfo tool, triggering a heap buffer overflow issue and causing a crash that leads to a denial of service. | 
| Group | Package | Affected | Fixed | Severity | Status | Ticket | 
|---|---|---|---|---|---|---|
| AVG-2721 | libtiff | 4.3.0-2 | Medium | Vulnerable | FS#74772 | 
| References | 
|---|
| https://gitlab.com/libtiff/libtiff/-/issues/319 https://gitlab.com/libtiff/libtiff/-/commit/87f580f39011109b3bb5f6eca13fac543a542798 |