Back to bug 2216614

Who When What Removed Added
TEJ RATHI 2023-06-22 05:37:58 UTC Depends On 2216615
TEJ RATHI 2023-06-22 05:38:31 UTC Summary TRAIGE-CVE-2023-25435 libtiff: tiffcrop: heap-buffer-overflow in extractContigSamplesShifted8bits() in tiffcrop.c TRIAGE-CVE-2023-25435 libtiff: tiffcrop: heap-buffer-overflow in extractContigSamplesShifted8bits() in tiffcrop.c
Alias TRAIGE-CVE-2023-25435 TRIAGE-CVE-2023-25435
TEJ RATHI 2023-06-22 05:38:55 UTC CC mmuzila, nforro, rh-spice-bugs
TEJ RATHI 2023-06-22 05:39:36 UTC Depends On 2216616, 2216617
TEJ RATHI 2023-06-22 05:44:59 UTC Depends On 2216619, 2216620, 2216621, 2216618
TEJ RATHI 2023-06-22 05:57:35 UTC CC adudiak, bdettelb, caswilli, dkuc, drieden, fjansen, hkataria, ikanias, jary, jburrell, jkoehler, jsherril, jwong, kaycoth, kshier, micjohns, rravi, sthirugn, tohughes
TEJ RATHI 2023-06-22 06:00:54 UTC CC adudiak, drieden, ikanias, jary, jsherril, jwong, rravi, tohughes
TEJ RATHI 2023-06-22 06:14:13 UTC Blocks 2216658
Guilherme de Almeida Suckevicz 2023-07-04 17:48:05 UTC Doc Text A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to heap-based buffer overflow in the extractContigSamplesShifted8bits function in tools/tiffcrop.c, resulting in a denial of service.
Fixed In Version libtiff 4.5.1
Guilherme de Almeida Suckevicz 2023-07-04 17:49:09 UTC Alias TRIAGE-CVE-2023-25435 CVE-2023-25435
Guilherme de Almeida Suckevicz 2023-07-04 17:49:41 UTC Summary TRIAGE-CVE-2023-25435 libtiff: tiffcrop: heap-buffer-overflow in extractContigSamplesShifted8bits() in tiffcrop.c CVE-2023-25435 libtiff: tiffcrop: heap-buffer-overflow in extractContigSamplesShifted8bits() in tiffcrop.c
Guilherme de Almeida Suckevicz 2023-07-05 12:39:00 UTC Doc Text A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to heap-based buffer overflow in the extractContigSamplesShifted8bits function in tools/tiffcrop.c, resulting in a denial of service. A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to a heap-based buffer overflow in the extractContigSamplesShifted8bits function in tools/tiffcrop.c, resulting in a denial of service.
Red Hat Bugzilla 2023-07-07 08:28:40 UTC Assignee security-response-team nobody

Back to bug 2216614