5.5
CVSSv3

CVE-2023-25433

Published: 29/06/2023 Updated: 01/08/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

libtiff 4.5.0 is vulnerable to Buffer Overflow via /libtiff/tools/tiffcrop.c:8499. Incorrect updating of buffer size after rotateImage() in tiffcrop cause heap-buffer-overflow and SEGV.

Vulnerable Product Search on Vulmon Subscribe to Product

libtiff libtiff 4.5.0

Vendor Advisories

libtiff 450 is vulnerable to Buffer Overflow via /libtiff/tools/tiffcropc:8499 Incorrect updating of buffer size after rotateImage() in tiffcrop cause heap-buffer-overflow and SEGV (CVE-2023-25433) A vulnerability was found in libtiff library This security flaw causes a heap buffer overflow issue via TIFFTAG_INKNAMES and TIFFTAG_NUMBEROFINKS ...