Bugzilla – Bug 1227914
VUL-0: CVE-2024-6716: tiff: libtiff: out-of-memory issue in TIFFReadEncodedStrip() may lead to denial of service
Last modified: 2024-07-16 12:35:26 UTC
A flaw was found in libtiff. This flaw allows an attacker to create a crafted tiff file, forcing libtiff to allocate memory indefinitely. This issue can result in a denial of service of the system consuming libtiff due to memory starvation. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2024-6716 https://bugzilla.redhat.com/show_bug.cgi?id=2297636 https://www.cve.org/CVERecord?id=CVE-2024-6716 https://access.redhat.com/security/cve/CVE-2024-6716 https://gitlab.com/libtiff/libtiff/-/issues/620