Known Vulnerabilities for products from Libtiff

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Libtiff".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-4775 json A flaw was found in the libtiff library. A remote attacker could exploit a signed integer overflow vulnerability in the putco... Not Provided 2026-03-24 2026-04-21
CVE-2025-9900 json Not Provided 2025-09-23 2026-04-20
CVE-2023-52356 json A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATi... Not Provided 2024-01-25 2026-04-17
CVE-2023-52355 json 7.5 - HIGH 2024-01-25 2024-02-04
CVE-2023-41175 json A vulnerability was found in libtiff due to multiple potential integer overflows in raw2tiff.c. This flaw allows remote attac... 6.5 - MEDIUM 2023-10-05 2023-11-07
CVE-2023-40745 json LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (application cra... 6.5 - MEDIUM 2023-10-05 2023-11-10
CVE-2023-30775 json A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSamples32b... 5.5 - MEDIUM 2023-05-19 2023-07-03
CVE-2023-30774 json A vulnerability was found in the libtiff library. This flaw causes a heap buffer overflow issue via the TIFFTAG_INKNAMES and ... 5.5 - MEDIUM 2023-05-19 2024-01-09
CVE-2023-30086 json Buffer Overflow vulnerability found in Libtiff V.4.0.7 allows a local attacker to cause a denial of service via the tiffcp fu... 5.5 - MEDIUM 2023-05-09 2023-06-16
CVE-2023-26966 json libtiff 4.5.0 is vulnerable to Buffer Overflow in uv_encode() when libtiff reads a corrupted little-endian TIFF file and spec... 5.5 - MEDIUM 2023-06-29 2023-08-01
CVE-2023-26965 json loadImage() in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based use after free via a crafted TIFF image. 5.5 - MEDIUM 2023-06-14 2023-08-01
CVE-2023-25435 json libtiff 4.5.0 is vulnerable to Buffer Overflow via extractContigSamplesShifted8bits() at /libtiff/tools/tiffcrop.c:3753. 5.5 - MEDIUM 2023-06-21 2023-06-28
CVE-2023-25434 json libtiff 4.5.0 is vulnerable to Buffer Overflow via extractContigSamplesBytes() at /libtiff/tools/tiffcrop.c:3215. 8.8 - HIGH 2023-06-14 2023-06-23
CVE-2023-25433 json libtiff 4.5.0 is vulnerable to Buffer Overflow via /libtiff/tools/tiffcrop.c:8499. Incorrect updating of buffer size after ro... 5.5 - MEDIUM 2023-06-29 2023-08-01
CVE-2023-6277 json libtiff 4.5.0 is vulnerable to Buffer Overflow via /libtiff/tools/tiffcrop.c:8499. Incorrect updating of buffer size after ro... 6.5 - MEDIUM 2023-11-24 2024-01-02
CVE-2023-3618 json A flaw was found in libtiff. A specially crafted tiff file can lead to a segmentation fault due to a buffer overflow in the F... 6.5 - MEDIUM 2023-07-12 2023-11-07
CVE-2023-3576 json A memory leak flaw was found in Libtiff's tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image file, al... 5.5 - MEDIUM 2023-10-04 2024-03-11
CVE-2023-3316 json A NULL pointer dereference in TIFFClose() is caused by a failure to open an output file (non-existent path or a path that req... 6.5 - MEDIUM 2023-06-19 2023-08-01
CVE-2023-3164 json A heap out-of-bounds read flaw was found in builtin.c in the gawk package. This issue may lead to a crash and could be used t... 5.5 - MEDIUM 2023-11-02 2024-03-08
CVE-2023-2908 json A null pointer dereference issue was found in Libtiff's tif_dir.c file. This issue may allow an attacker to pass a crafted TI... 5.5 - MEDIUM 2023-06-30 2023-11-07

Known software with vulnerabilities from Libtiff

Type Vendor Product Version
ApplicationLibtiffLibtiff-