VDB

ALSA-2025%3A20956

ALSA-2025%3A20956 PUBLISHED

The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files. Security Fix(es): * libtiff: LibTIFF Use-After-Free Vulnerability (CVE-2025-8176) * libtiff: Libtiff Write-What-Where (CVE-2025-9900) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Affected Products

VendorProductVersions
AlmaLinux:9libtiff-devel0, 0
AlmaLinux:9libtiff0, 0
AlmaLinux:9libtiff-tools0, 0

Timeline

  • Nov 11, 2025 CVE Published
  • Nov 19, 2025 CVE Updated
  • Mar 6, 2026 Distribution Patch
  • Mar 6, 2026 Distribution Patch
  • Mar 6, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›