OESA-2026-3655
Dashboard / Vulnerabilities / OESA-2026-3655
OESA-2026-3655
Summary: libtiff security update
Details: This provides support for the Tag Image File Format (TIFF), a widely used format for storing image data. The latest version of the TIFF specification is available on-line in several different formats.And contains command-line programs for manipulating TIFF format image files using the libtiff library. Security Fix(es): An issue in libtiff allows an attacker to execute arbitrary code via the process_command_opts() function in tools/tiffcrop.c. The vulnerability is classified as CWE-94 (Code Injection), where the product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.(CVE-2026-52490) An issue in libtiff 85f2ac8e0b01cb7db2bbecf4a3b891bdbef67938 allows an attacker to execute arbitrary code via the libtiff/tools/thumbnail.c: main() component(CVE-2026-52491) An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image.(CVE-2026-52492)
References: https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-3655, https://nvd.nist.gov/vuln/detail/CVE-2026-52490, https://nvd.nist.gov/vuln/detail/CVE-2026-52491, https://nvd.nist.gov/vuln/detail/CVE-2026-52492
Affected packages
Package
Name: libtiff
Purl: pkg:rpm/openEuler/libtiff&distro=openEuler-20.03-LTS-SP4
Affected ranges
Type: ECOSYSTEM
Events:
