Wind River Support Network

HomeDefectsLIN1021-17046
Acknowledged

LIN1021-17046 : Security Advisory - tiff - CVE-2025-8177

Created: Jul 28, 2025    Updated: Aug 20, 2025
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

A vulnerability was found in LibTIFF up to 4.7.0. It has been rated as critical. This issue affects the function setrow of the file tools/thumbnail.c. The manipulation leads to buffer overflow. An attack has to be approached locally. The patch is named e8c9d6c616b19438695fd829e58ae4fde5bfbc22. It is recommended to apply a patch to fix this issue. This vulnerability only affects products that are no longer supported by the maintainer.

CREATE(Triage):(User=admin) CVE-2025-8177 (https://nvd.nist.gov/vuln/detail/CVE-2025-8177)
Live chat
Online