HomeDefectsLIN1022-6388
Fixed

LIN1022-6388 : Security Advisory - tiff - CVE-2023-52356

Created: Jan 26, 2024    Updated: Mar 23, 2025
Resolved Date: Apr 12, 2024
Found In Version: 10.22.33.1
Fix Version: 10.22.33.16
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Userspace

Description

A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw allows a remote attacker to cause a heap-buffer overflow, leading to a denial of service.

CREATE(Triage):(User=admin) CVE-2023-52356 (https://nvd.nist.gov/vuln/detail/CVE-2023-52356)

CVEs