Libtiff CVE Vulnerabilities
By Libtiff — 2 known vulnerabilities
Critical
1
High
1
Medium
0
Low
0
None
0
All Libtiff CVEs
CVE-2026-4775
7.8
high
A flaw was found in the libtiff library. A remote attacker could exploit a signed integer overflow vulnerability in the putcontig8bitYCbCr44tile function by providing a specially crafted TIFF file. This flaw can lead to an out-of-bounds heap write due to incorrect memory pointer calculations, potent
Mar 24, 2026
CVE-2016-9535
9.8
critical
tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or buffer overflows in release mode, when dealing with unusual tile size like YCbCr with subsampling. Reported as MSVR 35105, aka "Predictor heap-buffer-overflow."
Nov 22, 2016