CVE-2023-26966

Updated: 2026-02-27 00:21:15.575449

Description:

libtiff 4.5.0 is vulnerable to Buffer Overflow in uv_encode() when libtiff reads a corrupted little-endian TIFF file and specifies the output to be big-endian.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x MEDIUM 5.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU libtiff 4.4.0 5.5 MEDIUM Released CLSA-2025:1745531344 2025-04-26 07:05:58