Related Vulnerabilities: CVE-2022-0907  

Unchecked Return Value to NULL Pointer Dereference in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f2b656e2.

Description

The MITRE CVE dictionary describes this issue as:

Unchecked Return Value to NULL Pointer Dereference in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f2b656e2.

Additional Information

  • Bugzilla 2064143: CVE-2022-0907 tiff: NULL Pointer Dereference in tiffcrop
  • CWE-476: NULL Pointer Dereference
  • FAQ: Frequently asked questions about CVE-2022-0907