5.5
CVSSv3

CVE-2022-41727

Published: 28/02/2023 Updated: 07/11/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

An attacker can craft a malformed TIFF image which will consume a significant amount of memory when passed to DecodeConfig. This could lead to a denial of service.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

golang image

golang tiff -

fedoraproject fedora 37

fedoraproject fedora 38

Vendor Advisories

DescriptionThe MITRE CVE dictionary describes this issue as: An attacker can craft a malformed TIFF image which will consume a significant amount of memory when passed to DecodeConfig This could lead to a denial of service ...