Related Vulnerabilities: CVE-2022-0909  

Divide By Zero error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f8d0f9aa.

Description

The MITRE CVE dictionary describes this issue as:

Divide By Zero error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f8d0f9aa.

Additional Information

  • Bugzilla 2064146: CVE-2022-0909 tiff: Divide By Zero error in tiffcrop
  • CWE-369: Divide By Zero
  • FAQ: Frequently asked questions about CVE-2022-0909