VDB

JLSEC-2025-278

JLSEC-2025-278 PUBLISHED CVSS 5.5 MEDIUM

libtiff's tiffcrop tool has a `uint32_t` underflow which leads to out of bounds read and write in...

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
JuliaLibtiff_jll0
JuliaLibtiff_jll0, 0

Timeline

  • Nov 25, 2025 CVE Published
  • Jul 23, 2026 CVE Updated
  • Aug 8, 2026 Distribution Patch
Open in Interactive Console →
$ Console Community · 100/wk Open console ›