VDB

DEBIAN-CVE-2025-8961

DEBIAN-CVE-2025-8961 PUBLISHED CVSS 1.899999976158142 LOW

A weakness has been identified in LibTIFF 4.7.0. This affects the function main of the file tiffcrop.c of the component tiffcrop. Executing manipulation can lead to memory corruption. The attack can only be executed locally. The exploit has been made available to the public and could be exploited.

Risk Scores

CVSS 4.0
1.899999976158142
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Affected Products

VendorProductVersions
Debian:13tiff0, 0, 4.7.0-3
Debian:14tiff4.7.0-4, 4.7.0-3, 0
Debian:12tiff4.7.0-4, 4.7.0-5, 4.7.1-1
Debian:11tiff4.2.0-1, 4.2.0-1, 4.2.0-1

Timeline

  • Aug 14, 2025 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›