PT-2022-7199 · Libtiff+8 · Libtiff+8

Su_Laus

·

Published

2022-03-10

·

Updated

2025-06-03

·

CVE-2022-1355

CVSS v3.1

6.1

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
Name of the Vulnerable Software and Affected Versions LibTIFF (affected versions not specified)
Description A stack buffer overflow flaw was found in Libtiff's tiffcp.c in the main() function. This flaw allows an attacker to pass a crafted TIFF file to the tiffcp tool, triggering a stack buffer overflow issue, possibly corrupting the memory, and causing a crash that leads to a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Stack Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

ALSA-2022:7585
ALSA-2022:8194
ALT-PU-2022-2007
ALT-PU-2022-3428
ALT-PU-2025-7532
BDU:2023-09082
CESA-2022_7585
CVE-2022-1355
DLA-3278-1
DSA-5333-1
MGASA-2022-0240
OESA-2022-1669
RHSA-2022:7585
RHSA-2022:8194
RHSA-2022_7585
RHSA-2022_8194
RLSA-2022:7585
USN-5619-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Libtiff
Linuxmint
Red Hat
Rocky Linux
Ubuntu