Red Hat Security Advisory 2023-6575-01 - An update for libtiff is now available for Red Hat Enterprise Linux 9. Issues addressed include buffer overflow, memory leak, null pointer, and use-after-free vulnerabilities.
eab16ffd79c1fcbfaeb9b04ad20e46cb118adbd74daa25b1acc79986af1a8a7e
Ubuntu Security Notice 6290-1 - It was discovered that LibTIFF could be made to write out of bounds when processing certain malformed image files with the tiffcrop utility. If a user were tricked into opening a specially crafted image file, an attacker could possibly use this issue to cause tiffcrop to crash, resulting in a denial of service, or possibly execute arbitrary code. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, and Ubuntu 22.04 LTS. It was discovered that LibTIFF incorrectly handled certain image files. If a user were tricked into opening a specially crafted image file, an attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 23.04.
dea439e173df06f4701c3d819ad53b19bb3bf0a6496304490d18dec1b8d0c9e5