CVE-2022-22844

Related Vulnerabilities: CVE-2022-22844  

LibTIFF 4.3.0 has an out-of-bounds read in _TIFFmemcpy in tif_unix.c in certain situations involving a custom tag and 0x0200 as the second word of the DE field.

Description

The MITRE CVE dictionary describes this issue as:

LibTIFF 4.3.0 has an out-of-bounds read in _TIFFmemcpy in tif_unix.c in certain situations involving a custom tag and 0x0200 as the second word of the DE field.

Additional Information

  • Bugzilla 2042603: CVE-2022-22844 libtiff: out-of-bounds read in _TIFFmemcpy() in tif_unix.c
  • CWE-125: Out-of-bounds Read
  • FAQ: Frequently asked questions about CVE-2022-22844