USN-6512-1
Dashboard / Vulnerabilities / USN-6512-1
USN-6512-1
Summary: tiff vulnerabilities
Details: It was discovered that LibTIFF could be made to run into an infinite loop. If a user or an automated system were tricked into opening a specially crafted image file, an attacker could possibly use this issue to cause a denial of service. (CVE-2022-40090) It was discovered that LibTIFF could be made leak memory. If a user or an automated system were tricked into opening a specially crafted image file, an attacker could possibly use this issue to cause a denial of service. (CVE-2023-3576)
References: https://ubuntu.com/security/notices/USN-6512-1, https://ubuntu.com/security/CVE-2022-40090, https://ubuntu.com/security/CVE-2023-3576
Affected packages
Package
Name: tiff
Purl: pkg:deb/ubuntu/tiff?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
