Integer Overflow Vulnerability in libtiff Affecting Various Applications
CVE-2020-35523
7.8HIGH
What is CVE-2020-35523?
An integer overflow flaw was identified in the libtiff library, specifically within the tif_getimage.c file. This vulnerability can be exploited when a user opens a specially crafted TIFF file, allowing an attacker to execute arbitrary code on the affected system. The risk associated with this vulnerability significantly impacts confidentiality, integrity, and availability of the system, exposing it to potential unauthorized access and manipulation.
Affected Version(s)
libtiff libtiff 4.2.0