vulnerability

Rocky Linux: CVE-2022-2521: libtiff (Multiple Advisories)

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:C)
Published
Aug 31, 2022
Added
Mar 12, 2024
Modified
Aug 13, 2025

Description

It was found in libtiff 4.4.0rc1 that there is an invalid pointer free operation in TIFFClose() at tif_close.c:131 called by tiffcrop.c:2522 that can cause a program crash and denial of service while processing crafted input.

Solutions

rocky-upgrade-libtiffrocky-upgrade-libtiff-debuginforocky-upgrade-libtiff-debugsourcerocky-upgrade-libtiff-develrocky-upgrade-libtiff-toolsrocky-upgrade-libtiff-tools-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.