Search CVE reports


Toggle filters

1 – 10 of 275 results


CVE-2025-8851

Medium priority
Needs evaluation

A vulnerability was determined in LibTIFF up to 4.5.1. Affected by this issue is the function readSeparateStripsetoBuffer of the file tools/tiffcrop.c of the component tiffcrop. The manipulation leads to stack-based buffer...

5 affected packages

tiff, qtwebengine-opensource-src, texmaker, gdal, neuron

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qtwebengine-opensource-src Needs evaluation Needs evaluation Needs evaluation Needs evaluation
texmaker Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gdal Not affected Not affected Not affected Not affected
neuron Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-8534

Medium priority
Needs evaluation

A vulnerability classified as problematic was found in libtiff 4.6.0. This vulnerability affects the function PS_Lvl2page of the file tools/tiff2ps.c of the component tiff2ps. The manipulation leads to null pointer dereference. It...

5 affected packages

tiff, qtwebengine-opensource-src, texmaker, gdal, neuron

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qtwebengine-opensource-src Needs evaluation Needs evaluation Needs evaluation Needs evaluation
texmaker Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gdal Not affected Not affected Not affected Not affected
neuron Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-13978

Medium priority
Needs evaluation

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as problematic. Affected by this vulnerability is the function t2p_read_tiff_init of the file tools/tiff2pdf.c of the component fax2ps. The manipulation leads...

5 affected packages

tiff, qtwebengine-opensource-src, texmaker, gdal, neuron

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qtwebengine-opensource-src Needs evaluation Needs evaluation Needs evaluation Needs evaluation
texmaker Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gdal Not affected Not affected Not affected Not affected
neuron Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-8177

Low priority
Vulnerable

A vulnerability was found in LibTIFF up to 4.7.0. It has been rated as critical. This issue affects the function setrow of the file tools/thumbnail.c. The manipulation leads to buffer overflow. An attack has to be approached...

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-8176

Low priority
Vulnerable

A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs...

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-7006

Medium priority

Some fixes available 8 of 26

A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults,...

5 affected packages

tiff, qtwebengine-opensource-src, texmaker, gdal, neuron

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Fixed Fixed Fixed Fixed
qtwebengine-opensource-src Needs evaluation Needs evaluation Needs evaluation Needs evaluation
texmaker Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gdal Not affected Not affected Not affected Not affected
neuron Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-6716

Low priority
Ignored

Rejected reason: Invalid security issue.

5 affected packages

gdal, neuron, tiff, qtwebengine-opensource-src, texmaker

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gdal Not affected Not affected Not affected Not affected
neuron Not affected Not affected Not affected Not affected
tiff Not affected Not affected Not affected Not affected
qtwebengine-opensource-src Not affected Not affected Not affected Not affected
texmaker Not affected Not affected Not affected Not affected
Show less packages

CVE-2023-52356

Medium priority

Some fixes available 9 of 25

A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw allows a remote attacker to cause a heap-buffer overflow, leading to a denial of service.

4 affected packages

tiff, qtwebengine-opensource-src, texmaker, gdal

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Fixed Fixed Fixed Fixed
qtwebengine-opensource-src Needs evaluation Needs evaluation Needs evaluation Needs evaluation
texmaker Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gdal Not affected Not affected Not affected Not affected
Show less packages

CVE-2023-52355

Negligible priority
Ignored

An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of service via a crafted input with a...

5 affected packages

tiff, qtwebengine-opensource-src, texmaker, gdal, neuron

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Ignored Ignored Ignored
qtwebengine-opensource-src Ignored Ignored Ignored
texmaker Ignored Ignored Ignored
gdal Not affected Not affected Not affected
neuron Ignored Ignored Ignored
Show less packages

CVE-2023-6228

Low priority

Some fixes available 9 of 35

An issue was found in the tiffcp utility distributed by the libtiff package where a crafted TIFF file on processing may cause a heap-based buffer overflow leads to an application crash.

4 affected packages

libgeotiff, libtk-img, povray, tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libgeotiff Needs evaluation Needs evaluation Needs evaluation Ignored
libtk-img Needs evaluation Needs evaluation Needs evaluation Needs evaluation
povray Needs evaluation Needs evaluation Needs evaluation Needs evaluation
tiff Fixed Fixed Fixed Fixed
Show less packages