Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown

CVE-2023-30775

Disclosure Date: May 19, 2023 (last updated February 25, 2025)
A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSamples32bits, tiffcrop.c.
Attacker Value
Unknown

CVE-2022-2521

Disclosure Date: August 31, 2022 (last updated February 24, 2025)
It was found in libtiff 4.4.0rc1 that there is an invalid pointer free operation in TIFFClose() at tif_close.c:131 called by tiffcrop.c:2522 that can cause a program crash and denial of service while processing crafted input.
Attacker Value
Unknown

CVE-2022-2520

Disclosure Date: August 31, 2022 (last updated February 24, 2025)
A flaw was found in libtiff 4.4.0rc1. There is a sysmalloc assertion fail in rotateImage() at tiffcrop.c:8621 that can cause program crash when reading a crafted input.
Attacker Value
Unknown

CVE-2022-2519

Disclosure Date: August 31, 2022 (last updated February 24, 2025)
There is a double free or corruption in rotateImage() at tiffcrop.c:8839 found in libtiff 4.4.0rc1
Attacker Value
Unknown

CVE-2022-34526

Disclosure Date: July 29, 2022 (last updated February 24, 2025)
A stack overflow was discovered in the _TIFFVGetField function of Tiffsplit v4.4.0. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted TIFF file parsed by the "tiffsplit" or "tiffcrop" utilities.
Attacker Value
Unknown

CVE-2022-2058

Disclosure Date: June 30, 2022 (last updated February 24, 2025)
Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f3a5e010.
Attacker Value
Unknown

CVE-2022-2057

Disclosure Date: June 30, 2022 (last updated February 24, 2025)
Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f3a5e010.
Attacker Value
Unknown

CVE-2022-2056

Disclosure Date: June 30, 2022 (last updated February 24, 2025)
Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f3a5e010.