发布时间: 2025年8月15日
修改时间: 2025年8月29日
LibTIFF is a library for reading and writing TIFF (label image file format) files that are open source. This library contains some command-line tools for handling TIFF files. There is a security vulnerability in the 4.6.0 version of LibTIFF, which originates from the dereference of the null pointer of the function PS_Lvl2page in the file tools/tiff2ps.c.
NVD | openEuler | |
---|---|---|
Confidentiality | None | |
Attack Vector | Local | |
CVSS评分 | N/A | 2.5 |
Attack Complexity | High | |
Privileges Required | Low | |
Scope | Unchanged | |
Integrity | None | |
User Interaction | None | |
Availability | Low |
公告名 | 概要 | 发布时间 |
---|---|---|
KylinSec-SA-2025-2815 | libtiff security update | 2025年9月9日 |
产品 | 包 | 状态 |
---|---|---|
KY3.4-5 | libtiff | Fixed |
V6 | libtiff | Fixed |
KY3.5.3 | libtiff | Fixed |
KY3.5.2 | libtiff | Fixed |