CVE-2022-1354 - log back

CVE-2022-1354 created at 16 May 2022 19:17:47
Severity
+ Low
Remote
+ Local
Type
+ Denial of service
Description
+ A heap buffer overflow flaw was found in Libtiffs' tiffinfo.c in TIFFReadRawDataStriped() function. This flaw allows an attacker to pass a crafted TIFF file to the tiffinfo tool, triggering a heap buffer overflow issue and causing a crash that leads to a denial of service.
References
+ https://gitlab.com/libtiff/libtiff/-/issues/319
+ https://gitlab.com/libtiff/libtiff/-/commit/87f580f39011109b3bb5f6eca13fac543a542798
Notes