CVE-2025-9165

EUVD-2025-25249
A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tiffcmp.c of the component tiffcmp. Executing manipulation can lead to memory leak. The attack is restricted to local execution. This attack is characterized by high complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. There is ongoing doubt regarding the real existence of this vulnerability. This patch is called ed141286a37f6e5ddafb5069347ff5d587e7a4e0. It is best practice to apply a patch to resolve this issue. A researcher disputes the security impact of this issue, because "this is a memory leak on a command line tool that is about to exit anyway". In the reply the project maintainer declares this issue as "a simple 'bug' when leaving the command line tool and (...) not a security issue at all".
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
2.5 LOW
LOCAL
HIGH
LOW
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 13%
Affected Products (NVD)
VendorProductVersion
libtifflibtiff
4.7.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
tiff
bookworm
unimportant
bookworm (security)
unimportant
bullseye
unimportant
bullseye (security)
unimportant
forky
4.7.1-2
fixed
sid
4.7.1-2
fixed
trixie
4.7.0-3+deb13u2
fixed
trixie (security)
4.7.0-3+deb13u2
fixed
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libtiff-devel
suse enterprise desktop 15 SP6
4.7.0-150600.3.18.1
fixed
suse enterprise desktop 15 SP7
4.7.0-150600.3.18.1
fixed
suse enterprise sap 15 SP6
4.7.0-150600.3.18.1
fixed
suse enterprise sap 15 SP7
4.7.0-150600.3.18.1
fixed
suse enterprise server 15 SP4
4.0.9-150000.45.55.1
fixed
suse enterprise server 15 SP6
4.7.0-150600.3.18.1
fixed
suse enterprise server 15 SP7
4.7.0-150600.3.18.1
fixed
libtiff5
suse enterprise desktop 15 SP6
4.0.9-150000.45.55.1
fixed
suse enterprise desktop 15 SP7
4.0.9-150000.45.55.1
fixed
suse enterprise sap 15 SP6
4.0.9-150000.45.55.1
fixed
suse enterprise sap 15 SP7
4.0.9-150000.45.55.1
fixed
suse enterprise server 12 SP3
4.0.9-44.94.1
fixed
suse enterprise server 15 SP4
4.0.9-150000.45.55.1
fixed
suse enterprise server 15 SP6
4.0.9-150000.45.55.1
fixed
suse enterprise server 15 SP7
4.0.9-150000.45.55.1
fixed
libtiff5-32bit
suse enterprise desktop 15 SP6
4.0.9-150000.45.55.1
fixed
suse enterprise desktop 15 SP7
4.0.9-150000.45.55.1
fixed
suse enterprise sap 15 SP6
4.0.9-150000.45.55.1
fixed
suse enterprise sap 15 SP7
4.0.9-150000.45.55.1
fixed
suse enterprise server 12 SP3
4.0.9-44.94.1
fixed
suse enterprise server 15 SP4
4.0.9-150000.45.55.1
fixed
suse enterprise server 15 SP6
4.0.9-150000.45.55.1
fixed
suse enterprise server 15 SP7
4.0.9-150000.45.55.1
fixed
libtiff6
suse enterprise desktop 15 SP6
4.7.0-150600.3.18.1
fixed
suse enterprise desktop 15 SP7
4.7.0-150600.3.18.1
fixed
suse enterprise sap 15 SP6
4.7.0-150600.3.18.1
fixed
suse enterprise sap 15 SP7
4.7.0-150600.3.18.1
fixed
suse enterprise server 15 SP6
4.7.0-150600.3.18.1
fixed
suse enterprise server 15 SP7
4.7.0-150600.3.18.1
fixed
libtiff6-32bit
suse enterprise desktop 15 SP6
4.7.0-150600.3.18.1
fixed
suse enterprise desktop 15 SP7
4.7.0-150600.3.18.1
fixed
suse enterprise sap 15 SP6
4.7.0-150600.3.18.1
fixed
suse enterprise sap 15 SP7
4.7.0-150600.3.18.1
fixed
suse enterprise server 15 SP6
4.7.0-150600.3.18.1
fixed
suse enterprise server 15 SP7
4.7.0-150600.3.18.1
fixed
tiff
suse enterprise server 12 SP3
4.0.9-44.94.1
fixed