CVE-2022-1354
31.08.2022, 16:15
A heap buffer overflow flaw was found in Libtiffs' tiffinfo.c in TIFFReadRawDataStriped() function. This flaw allows an attacker to pass a crafted TIFF file to the tiffinfo tool, triggering a heap buffer overflow issue and causing a crash that leads to a denial of service.Enginsight
| Vendor | Product | Version |
|---|---|---|
| libtiff | libtiff | 𝑥 < 4.4.0 |
| redhat | enterprise_linux | 9.0 |
| netapp | ontap_select_deploy_administration_utility | - |
| debian | debian_linux | 10.0 |
| debian | debian_linux | 11.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References