CVE-2025-61144

Updated: 2026-02-27 04:32:56.437287

Description:

libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.3

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU libtiff 4.4.0 7.3 HIGH Released CLSA-2026:1772622084 2026-03-04 19:09:49
CentOS 7 ELS libtiff 4.0.3 7.3 HIGH In Rollout CLSA-2026:1772574874 2026-03-04 08:18:37
Oracle Linux 7 ELS libtiff 4.0.3 7.3 HIGH Released CLSA-2026:1772575082 2026-03-04 08:18:35
TuxCare 9.6 ESU libtiff 4.4.0 7.3 HIGH Released CLSA-2026:1772642268 2026-03-04 19:09:45