VYPR

libtiff

by Red Hat

CVEs (2)

  • CVE-2026-4775HigMar 24, 2026
    risk 0.51cvss 7.8epss 0.00

    A flaw was found in the libtiff library. A remote attacker could exploit a signed integer overflow vulnerability in the putcontig8bitYCbCr44tile function by providing a specially crafted TIFF file. This flaw can lead to an out-of-bounds heap write due to incorrect memory pointer…

  • CVE-2010-2598Jul 2, 2010
    risk 0.00cvss —epss 0.02

    LibTIFF in Red Hat Enterprise Linux (RHEL) 3 on x86_64 platforms, as used in tiff2rgba, attempts to process image data even when the required compression functionality is not configured, which allows remote attackers to cause a denial of service via a crafted TIFF image, related…