Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-05534
HistoryMar 10, 2021 - 12:00 a.m.

libtiff integer overflow vulnerability

2021-03-1000:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.004 Low

EPSS

Percentile

72.9%

Libtiff is a library for reading and writing tagged image file format (abbreviated as TIFF) files. libtiff contains tif_getimage.c which is vulnerable to an integer overflow. An attacker could exploit this vulnerability to inject and execute arbitrary code via specially crafted TIFF files.

CPENameOperatorVersion
libtiff libtifflt4.2.0