• CVE-2025-8534

发布时间: 2025年8月15日

修改时间: 2025年8月29日

概要

LibTIFF is a library for reading and writing TIFF (label image file format) files that are open source. This library contains some command-line tools for handling TIFF files. There is a security vulnerability in the 4.6.0 version of LibTIFF, which originates from the dereference of the null pointer of the function PS_Lvl2page in the file tools/tiff2ps.c.

CVSS v3 指标

NVD openEuler
Confidentiality None
Attack Vector Local
CVSS评分 N/A 2.5
Attack Complexity High
Privileges Required Low
Scope Unchanged
Integrity None
User Interaction None
Availability Low

安全公告

公告名 概要 发布时间
KylinSec-SA-2025-2815 libtiff security update 2025年9月9日

影响产品

产品 状态
KY3.4-5 libtiff Fixed
V6 libtiff Fixed
KY3.5.3 libtiff Fixed
KY3.5.2 libtiff Fixed