VDB
BDU%3A2025-13919
BDU%3A2025-13919
PUBLISHED
CVSS 4.300000190734863 MEDIUM
Уязвимость функции get_histogram библиотеки LibTIFF, позволяющая нарушителю выполнить произвольный код
Risk Scores
CVSS 2.0
4.300000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Novell Inc., ООО «Ред Софт», АО «ИВК», Silicon Graphics Corp. | Red Hat Enterprise Linux, openSUSE Tumbleweed, РЕД ОС (запись в едином реестре российских программ №3751), SUSE Linux Enterprise Server for SAP Applications, Альт 8 СП (запись в едином реестре российских программ №4305), SUSE Linux Enterprise Micro, SUSE Enterprise Storage, Suse Linux Enterprise Server, SUSE Linux Enterprise High Performance Computing, АЛЬТ СП 10, SUSE Liberty Linux, Suse Linux Enterprise Desktop, SUSE Linux Enterprise Module for Basesystem, SUSE Linux Enterprise Module for Package Hub, OpenSUSE Leap, SUSE Manager Proxy, SUSE Manager Retail Branch Server, SUSE Manager Server, LibTIFF |
Timeline
- Nov 10, 2025 CVE Published
- Dec 3, 2025 CVE Updated
References
- https://redos.red-soft.ru/support/secure/uyazvimosti/mnozhestvennye-uyazvimosti-libtiff-05112025/?sphrase_id=1339101 url
- https://www.suse.com/ko-kr/security/cve/CVE-2025-8176.html url
- https://gitlab.com/libtiff/libtiff/-/commit/fe10872e53efba9cc36c66ac4ab3b41a839d5172 advisory
- https://gitlab.com/libtiff/libtiff/-/merge_requests/727 advisory
- https://altsp.su/obnovleniya-bezopasnosti/ advisory
- https://gitlab.com/libtiff/libtiff/-/issues/707 advisory
- https://access.redhat.com/security/cve/cve-2025-8176 advisory