PT-2022-13714 · Libtiff+3 · Libtiff+3
Mqrsv
·
Published
2022-04-03
·
Updated
2026-03-31
·
CVE-2022-1210
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
LibTIFF version 4.3.0
Description
A problematic issue was found in the TIFF File Handler of tiff2ps. It allows for a denial of service when opening a malicious file. The attack can be launched remotely but requires user interaction.
Recommendations
For LibTIFF version 4.3.0, consider avoiding the use of the TIFF File Handler of tiff2ps until a patch is available. As a temporary workaround, restrict access to potentially malicious files to minimize the risk of exploitation.
Exploit
Fix
DoS
Resource Exhaustion
Improper Resource Release
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Debian
Libtiff
Suse