Buffer Overflow Vulnerability in libtiff Affects Image Processing Capabilities
CVE-2023-26966
5.5MEDIUM
What is CVE-2023-26966?
A buffer overflow vulnerability has been identified in libtiff version 4.5.0, affecting how the library handles the uv_encode()
function when reading corrupted little-endian TIFF files with big-endian output specifications. This flaw could potentially enable attackers to manipulate image processing workflows, causing unexpected behavior or leading to system crashes.