VDB
DEBIAN-CVE-2025-8961
DEBIAN-CVE-2025-8961
PUBLISHED
CVSS 1.899999976158142 LOW
A weakness has been identified in LibTIFF 4.7.0. This affects the function main of the file tiffcrop.c of the component tiffcrop. Executing manipulation can lead to memory corruption. The attack can only be executed locally. The exploit has been made available to the public and could be exploited.
Risk Scores
CVSS 4.0
1.899999976158142
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:13 | tiff | 0, 0, 4.7.0-3 |
| Debian:14 | tiff | 4.7.0-4, 4.7.0-3, 0 |
| Debian:12 | tiff | 4.7.0-4, 4.7.0-5, 4.7.1-1 |
| Debian:11 | tiff | 4.2.0-1, 4.2.0-1, 4.2.0-1 |
Timeline
- Aug 14, 2025 CVE Published
- Apr 28, 2026 CVE Updated