Release Info

Advisory: CLSA-2025:1765546516

OS: TuxCare 9.6 ESU

Public date: 2025-12-12 13:35:18.107346

Project: libtiff

Version: 4.4.0-13.el9_6.2.tuxcare.els2

Errata link: https://errata.tuxcare.com/els_os/tuxcare9.6esu/CLSA-2025-1765546516.html

Changelog

- CVE-2023-52356: add col/row validation in TIFFReadRGBAStrip/TIFFReadRGBATile to prevent heap-buffer overflow and potential DoS

Update

Update command: dnf update libtiff*

Packages list

libtiff-4.4.0-13.el9_6.2.tuxcare.els2.i686.rpm libtiff-4.4.0-13.el9_6.2.tuxcare.els2.x86_64.rpm libtiff-devel-4.4.0-13.el9_6.2.tuxcare.els2.i686.rpm libtiff-devel-4.4.0-13.el9_6.2.tuxcare.els2.x86_64.rpm libtiff-static-4.4.0-13.el9_6.2.tuxcare.els2.x86_64.rpm libtiff-tools-4.4.0-13.el9_6.2.tuxcare.els2.x86_64.rpm

CVEs

CVE-2023-52356