Buffer Overflow Vulnerability in LibTIFF Affected by Local Exploits
CVE-2025-8177
What is CVE-2025-8177?
A buffer overflow vulnerability was identified in the LibTIFF library, affecting versions up to 4.7.0. The issue arises within the setrow function located in the file tools/thumbnail.c, and it can be exploited locally. Attackers may utilize this vulnerability to manipulate memory allocation, potentially leading to unauthorized access or system crashes. Users are urged to apply the patch identified as e8c9d6c616b19438695fd829e58ae4fde5bfbc22 to mitigate this risk. It is important to note that this vulnerability impacts products that are no longer supported by the maintainer, underscoring the need for users to prioritize updating their software.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
LibTIFF 4.0
LibTIFF 4.1
LibTIFF 4.2
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
