VDB
BDU%3A2025-13923
BDU%3A2025-13923
PUBLISHED
CVSS 1 LOW
Уязвимость функции t2p_read_tiff_init() библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
1
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Novell Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», АО «ИВК», Silicon Graphics Corp. | openSUSE Tumbleweed, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Альт 8 СП (запись в едином реестре российских программ №4305), АЛЬТ СП 10, Suse Linux Enterprise Desktop, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise High Performance Computing, SUSE Linux Enterprise Module for Basesystem, SUSE Linux Enterprise Module for Package Hub, OpenSUSE Leap, LibTIFF |
Timeline
- Nov 10, 2025 CVE Published
- Dec 3, 2025 CVE Updated
References
- https://gitlab.com/libtiff/libtiff/-/commit/2ebfffb0e8836bfb1cd7d85c059cd285c59761a4 url
- https://security-tracker.debian.org/tracker/CVE-2024-13978 url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://www.suse.com/ko-kr/security/cve/CVE-2024-13978.html advisory
- https://redos.red-soft.ru/support/secure/uyazvimosti/mnozhestvennye-uyazvimosti-libtiff-05112025/?sphrase_id=1339101 url