GHSA-fh6j-mgh8-7prhHighCVSS 7.5

An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file...

Published
January 25, 2024
Last Modified
July 20, 2026

🔗 CVE IDs covered (1)

📋 Description

An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of service via a crafted input with a size smaller than 379 KB.

🔗 References (13)