Arbitrary Code Execution Vulnerability in LibTIFF by The LibTIFF Group
CVE-2026-52490
9.8CRITICAL
What is CVE-2026-52490?
An identified issue in LibTIFF can permit attackers to execute arbitrary code through the process_command_opts() function located in tools/tiffcrop.c. Proper validation is critical to safeguard against malicious inputs that could exploit this vulnerability, potentially leading to significant security risks for applications relying on this library.
