Low severity3.3NVD Advisory· Published Dec 18, 2023· Updated Jun 17, 2026
CVE-2023-6228
CVE-2023-6228
Description
An issue was found in the tiffcp utility distributed by the libtiff package where a crafted TIFF file on processing may cause a heap-based buffer overflow leads to an application crash.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
16cpe:/a:redhat:enterprise_linux:8::crb+ 4 more
- cpe:/a:redhat:enterprise_linux:8::crbrange: 0:4.0.9-32.el8_10
- cpe:/a:redhat:enterprise_linux:9::crbrange: 0:4.4.0-12.el9
- cpe:/o:redhat:enterprise_linux:6
- cpe:/o:redhat:enterprise_linux:7
- cpe:/o:redhat:enterprise_linux:8
- osv-coords9 versionspkg:apk/chainguard/tiffpkg:apk/chainguard/tiff-devpkg:apk/chainguard/tiff-docpkg:apk/wolfi/tiffpkg:apk/wolfi/tiff-devpkg:apk/wolfi/tiff-docpkg:rpm/almalinux/libtiffpkg:rpm/almalinux/libtiff-develpkg:rpm/almalinux/libtiff-tools
< 4.6.0-r2+ 8 more
- (no CPE)range: < 4.6.0-r2
- (no CPE)range: < 4.6.0-r2
- (no CPE)range: < 4.6.0-r2
- (no CPE)range: < 4.6.0-r2
- (no CPE)range: < 4.6.0-r2
- (no CPE)range: < 4.6.0-r2
- (no CPE)range: < 4.4.0-12.el9
- (no CPE)range: < 4.4.0-12.el9
- (no CPE)range: < 4.4.0-12.el9
Patches
Vulnerability mechanics
References
4- access.redhat.com/security/cve/CVE-2023-6228nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
- access.redhat.com/errata/RHSA-2024:2289nvd
- access.redhat.com/errata/RHSA-2024:5079nvd
News mentions
0No linked articles in our index yet.