VulnSea

libtiff vulnerabilities

CVEs whose affected-version data names the libtiff package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

4 CVEsRSS

CVE-2026-18495Medium· 6.1
1w ago

A flaw was found in libtiff

A flaw was found in libtiff. A heap-buffer overflow vulnerability exists in the `tiff2pdf` utility due to an integer truncation error when processing crafted BigTIFF files. An attacker can provide a specially crafted BigTIFF file, causin…

SunlitRed Hat · libtiff-mainEPSS 0.12%via NVD
CVE-2026-12912High· 7.3
2mo ago

A flaw was found in libtiff

A flaw was found in libtiff. A remote attacker could exploit this vulnerability by providing a specially crafted PixarLog-compressed TIFF image. This issue occurs when decoding Pixarlog codec images with the PIXARLOGDATAFMT_8BITABGR outp…

TwilightRed Hat · libtiffEPSS 0.43%via NVD
CVE-2023-52355High· 7.5
2y ago

An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API

An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of service via a crafted input with a size smal…

Twilightlibtiff · libtiffEPSS 1.8%via NVD
CVE-2023-3576Medium· 5.5
2y ago

A memory leak flaw was found in Libtiff's tiffcrop utility

A memory leak flaw was found in Libtiff's tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image file, allowing an attacker to pass a crafted TIFF image file to tiffcrop utility, which causes this memory leak issue, r…

Sunlitlibtiff · libtiffEPSS 0.35%via NVD
libtiff vulnerabilities (CVEs) · VulnSea