[CLSA-2025:1758644444] libtiff: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2025-09-23 16:20:48 UTC
Description:
- CVE-2025-8176: fix use after free in tools/tiffmedian.c - CVE-2025-8177: fix buffer overflow in tools/thumbnail.c
Updated packages:
  • libtiff-4.0.3-35.el7.tuxcare.els4.i686.rpm
    sha:d0f44dcd96d2be11f661cb3c473271c4f1884709ac7c39475491988326d4ee9b
  • libtiff-4.0.3-35.el7.tuxcare.els4.x86_64.rpm
    sha:06ac6f6598c74064c3065e354b6e7a4938b2a78d84abdcbfef74fa92ad46fa7f
  • libtiff-devel-4.0.3-35.el7.tuxcare.els4.i686.rpm
    sha:36e1673fb7229a32282d91fbd984cfe6cc2c35a1928b7161d3f363a6b92991e5
  • libtiff-devel-4.0.3-35.el7.tuxcare.els4.x86_64.rpm
    sha:f1df5f07f70e59a354f5a809ce824ceda8dab69813bf709b8f328cce515687b3
  • libtiff-static-4.0.3-35.el7.tuxcare.els4.i686.rpm
    sha:0960c43e08ba164e01c78fb0e473769834372bd84deab773282208dcb48c7fc3
  • libtiff-static-4.0.3-35.el7.tuxcare.els4.x86_64.rpm
    sha:86a26f3b1917bef5d2dee607c69714482e8844ababb28c3d8eec19c8108ac107
  • libtiff-tools-4.0.3-35.el7.tuxcare.els4.x86_64.rpm
    sha:a9e349ff394dc2349ba900439c01a0309189155851963b4598f1c07eba6de315
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.