#VU63826 Out-of-bounds read in LibTIFF - CVE-2022-1622
Published: May 31, 2022 / Updated: June 6, 2022
LibTIFF
LibTIFF
Description
The vulnerability allows a remote attacker to perform a denial of service attack.
The vulnerability exists due to a boundary condition in LZWDecode() function in libtiff/tif_lzw.c:619. A remote attacker can create a specially crafted TIFF file, trick the victim into opening it, trigger out-of-bounds read error and to perform a denial of service attack.