Back to search
CVE-2022-1354
Published: Aug 31, 2022
Modified: Aug 3, 2024
PUBLISHED
Description
A heap buffer overflow flaw was found in Libtiffs' tiffinfo.c in TIFFReadRawDataStriped() function. This flaw allows an attacker to pass a crafted TIFF file to the tiffinfo tool, triggering a heap buffer overflow issue and causing a crash that leads to a denial of service.
| Vendor | Product | Versions |
|---|---|---|
n/a | libtiff | affected Not-Known |
Weaknesses (CWE)
References
GLSA-202210-10
vendor-advisory
DSA-5333
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now