Wind River Support Network

HomeDefectsLINCD-8231
Fixed

LINCD-8231 : Security Advisory - tiff - CVE-2022-0562

Created: Feb 13, 2022    Updated: Mar 31, 2022
Resolved Date: Mar 9, 2022
Found In Version: 10.20.6.0
Fix Version: 10.22.13.0
Severity: Standard
Applicable for: Wind River Linux CD
Component/s: Userspace

Description

Null source pointer passed as an argument to memcpy() function within TIFFReadDirectory() in tif_dirread.c in libtiff versions from 4.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, a fix is available with commit 561599c.

CREATE(Triage):(User=admin) CVE-2022-0562 (https://nvd.nist.gov/vuln/detail/CVE-2022-0562)

CVEs


Live chat
Online