A memory leak flaw was found in Libtiffs tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image file, allowing an attacker to pass a crafted TIFF image file to tiffcrop utility, which causes this memory leak issue, resulting an application crash, eventually leading to a denial of service.
The product does not sufficiently track and release allocated memory after it has been used, which slowly consumes remaining memory.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libtiff | Libtiff | * | 4.5.1 (excluding) |
Red Hat Enterprise Linux 9 | RedHat | libtiff-0:4.4.0-10.el9 | * |
Tiff | Ubuntu | bionic | * |
Tiff | Ubuntu | esm-infra/bionic | * |
Tiff | Ubuntu | esm-infra/xenial | * |
Tiff | Ubuntu | focal | * |
Tiff | Ubuntu | jammy | * |
Tiff | Ubuntu | kinetic | * |
Tiff | Ubuntu | lunar | * |
Tiff | Ubuntu | trusty | * |
Tiff | Ubuntu | trusty/esm | * |
Tiff | Ubuntu | xenial | * |