CVE-2022-1354
31.08.2022, 16:15
A heap buffer overflow flaw was found in Libtiffs' tiffinfo.c in TIFFReadRawDataStriped() function. This flaw allows an attacker to pass a crafted TIFF file to the tiffinfo tool, triggering a heap buffer overflow issue and causing a crash that leads to a denial of service.Enginsight
Vendor | Product | Version |
---|---|---|
libtiff | libtiff | 𝑥 < 4.4.0 |
redhat | enterprise_linux | 9.0 |
netapp | ontap_select_deploy_administration_utility | - |
debian | debian_linux | 10.0 |
debian | debian_linux | 11.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References