CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

Search Vulnerabilities

 Software

Searching vulnerabilities affecting “libtiff”

115 vulnerabilities found for “libtiff”

Page 1 of 6

CVE-2022-2058
MEDIUM5.5

Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f3a5e010.

libtiff / libtiff+5
Local
Published Jun 30, 2022
Page 1 of 6
CVE-2022-2057
MEDIUM5.5

Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f3a5e010.

libtiff / libtiff+5
Local
Published Jun 30, 2022
CVE-2022-2056
MEDIUM5.5

Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f3a5e010.

libtiff / libtiff+5
Local
Published Jun 30, 2022
CVE-2022-1623
MEDIUM5.5

LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:624, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.

libtiff / libtiff+4
Local
Published May 11, 2022
CVE-2022-1622
MEDIUM5.5

LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.

libtiff / libtiff+8
Local
Published May 11, 2022
CVE-2022-1210
MEDIUM4.3

A vulnerability classified as problematic was found in LibTIFF 4.3.0. Affected by this vulnerability is the TIFF File Handler of tiff2ps. Opening a malicious file leads to a denial of service. The attack can be launched remotely but requires user interaction. The exploit has been disclosed to the public and may be used.

libtiff / libtiff+1
Network
Published Apr 3, 2022
CVE-2022-1056
MEDIUM5.5

Out-of-bounds Read error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 46dc8fcd.

libtiff / libtiff+1
Local
Published Mar 28, 2022
CVE-2022-0907
MEDIUM5.5

Unchecked Return Value to NULL Pointer Dereference in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f2b656e2.

libtiff / libtiff+5
Local
Published Mar 11, 2022
CVE-2022-0909
MEDIUM5.5

Divide By Zero error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f8d0f9aa.

libtiff / libtiff+5
Local
Published Mar 11, 2022
CVE-2022-0924
MEDIUM5.5

Out-of-bounds Read error in tiffcp in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 408976c4.

libtiff / libtiff+5
Local
Published Mar 11, 2022
CVE-2022-0908
HIGH7.7

Null source pointer passed as an argument to memcpy() function within TIFFFetchNormalTag () in tif_dirread.c in libtiff versions up to 4.3.0 could lead to Denial of Service via crafted TIFF file.

libtiff / libtiff+5
Network
Published Mar 11, 2022
CVE-2022-0891
MEDIUM6.1

A heap buffer overflow in ExtractImageSection function in tiffcrop.c in libtiff library Version 4.3.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into application crash, potential information disclosure or any other context-dependent impact

libtiff / libtiff+5
Local
Published Mar 10, 2022
CVE-2022-0865
MEDIUM5.5

Reachable Assertion in tiffcp in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 5e180045.

libtiff / libtiff+4
Local
Published Mar 10, 2022
CVE-2022-0561
MEDIUM5.5

Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff versions from 3.9.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, the fix is available with commit eecb0712.

libtiff / libtiff+6
Local
Published Feb 11, 2022
CVE-2022-0562
MEDIUM5.5

Null source pointer passed as an argument to memcpy() function within TIFFReadDirectory() in tif_dirread.c in libtiff versions from 4.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, a fix is available with commit 561599c.

libtiff / libtiff+5
Local
Published Feb 11, 2022
CVE-2022-22844
MEDIUM5.5

LibTIFF 4.3.0 has an out-of-bounds read in _TIFFmemcpy in tif_unix.c in certain situations involving a custom tag and 0x0200 as the second word of the DE field.

libtiff / libtiff+4
Local
Published Jan 10, 2022
CVE-2020-35521
MEDIUM5.5

A flaw was found in libtiff. Due to a memory allocation failure in tif_read.c, a crafted TIFF file can lead to an abort, resulting in denial of service.

libtiff / libtiff+4
Local
Published Mar 9, 2021
CVE-2020-35523
HIGH7.8

An integer overflow flaw was found in libtiff that exists in the tif_getimage.c file. This flaw allows an attacker to inject and execute arbitrary code when a user opens a crafted TIFF file. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

libtiff / libtiff+6
Local
Published Mar 9, 2021
CVE-2020-35524
HIGH7.8

A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can lead to arbitrary code execution. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

libtiff / libtiff+8
Local
Published Mar 9, 2021
CVE-2020-35522
MEDIUM5.5

In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A crafted TIFF document can lead to an abort, resulting in a remote denial of service attack.

libtiff / libtiff+5
Local
Published Mar 9, 2021