compat-libtiff3 vulnerabilities
CVEs whose affected-version data names the compat-libtiff3 package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-18495Medium· 6.1A flaw was found in libtiff
A flaw was found in libtiff. A heap-buffer overflow vulnerability exists in the `tiff2pdf` utility due to an integer truncation error when processing crafted BigTIFF files. An attacker can provide a specially crafted BigTIFF file, causin…
▾ SunlitRed Hat · libtiff-mainEPSS 0.12%via NVD
CVE-2026-12912High· 7.3A flaw was found in libtiff
A flaw was found in libtiff. A remote attacker could exploit this vulnerability by providing a specially crafted PixarLog-compressed TIFF image. This issue occurs when decoding Pixarlog codec images with the PIXARLOGDATAFMT_8BITABGR outp…
▾ TwilightRed Hat · libtiffEPSS 0.43%via NVD