<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T20:06:00.993315+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2022:7585</id>
    <title>ALSA-2022:7585 — Moderate: libtiff security update</title>
    <updated>2026-10-02T20:06:01.008013+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: libtiff, AlmaLinux:8: libtiff-devel, AlmaLinux:8: libtiff-tools</p>
<p>The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.</p>
<p>Security Fix(es):</p>
<p>* libtiff: Denial of Service via crafted TIFF file (CVE-2022-0561)
* libtiff: Null source pointer lead to Denial of Service via crafted TIFF file (CVE-2022-0562)
* libtiff: reachable assertion (CVE-2022-0865)
* libtiff: Out-of-bounds Read error in tiffcp (CVE-2022-0924)
* libtiff: stack-buffer-overflow in tiffcp.c in main() (CVE-2022-1355)
* libtiff: out-of-bounds read in _TIFFmemcpy() in tif_unix.c (CVE-2022-22844)
* libtiff: heap buffer overflow in extractImageSection (CVE-2022-0891)
* tiff: Null source pointer passed as an argument to memcpy in TIFFFetchNormalTag() in tif_dirread.c (CVE-2022-0908)
* tiff: Divide By Zero error in tiffcrop (CVE-2022-0909)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Additional Changes:</p>
<p>For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2022:7585"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-05792</id>
    <title>bdu:2022-05792</title>
    <updated>2026-10-02T20:06:01.008084+00:00</updated>
    <content>bdu:2022-05792</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-05792"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2022-0891</id>
    <title>Withdrawn: BELL-CVE-2022-0891 — CVE-2022-0891 does not affect BellSoft software</title>
    <updated>2026-10-02T20:06:01.008101+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2022-0891"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-1103</id>
    <title>certfr-2024-avi-1103 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-02T20:06:01.008117+00:00</updated>
    <content>certfr-2024-avi-1103</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-1103"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-11335</id>
    <title>EUVD-2026-11335</title>
    <updated>2026-10-02T20:06:01.008131+00:00</updated>
    <content>EUVD-2026-11335</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-11335"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-0891</id>
    <title>fkie_cve-2022-0891</title>
    <updated>2026-10-02T20:06:01.008141+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A heap buffer overflow in ExtractImageSection function in tiffcrop.c in libtiff library Version 4.3.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into application crash, potential information disclosure or any other context-dependent impact</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-0891"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-ppwc-w499-gfmh</id>
    <title>GHSA-ppwc-w499-gfmh</title>
    <updated>2026-10-02T20:06:01.008162+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A heap buffer overflow in ExtractImageSection function in tiffcrop.c in libtiff library Version 4.3.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into application crash, potential information disclosure or any other context-dependent impact</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-ppwc-w499-gfmh"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-0891</id>
    <title>gsd-2022-0891</title>
    <updated>2026-10-02T20:06:01.008177+00:00</updated>
    <content>gsd-2022-0891</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-0891"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2022-0891</id>
    <title>msrc_CVE-2022-0891 — A heap buffer overflow in ExtractImageSection function in tiffcrop.c in libtiff library Version 4.3.0 allows attacker t…</title>
    <updated>2026-10-02T20:06:01.008187+00:00</updated>
    <content>msrc_CVE-2022-0891</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2022-0891"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2022-1594</id>
    <title>OESA-2022-1594 — libtiff security update</title>
    <updated>2026-10-02T20:06:01.008202+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: libtiff, openEuler:20.03-LTS-SP2: libtiff, openEuler:20.03-LTS-SP3: libtiff</p>
<p>This libtiff provides support for the Tag Image File Format (TIFF), a widely used format for storing image data. The latest version of the TIFF specification is available on-line in several different formats.And contains command-line programs for manipulating TIFF format image files using the libtiff library.

Security Fix(es):

A heap buffer overflow in ExtractImageSection function in tiffcrop.c in libtiff library Version 4.3.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into application crash, potential information disclosure or any other context-dependent impact(CVE-2022-0891)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2022-1594"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12057-1</id>
    <title>openSUSE-SU-2024:12057-1 — libtiff-devel-32bit-4.3.0-1.6 on GA media</title>
    <updated>2026-10-02T20:06:01.008228+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>libtiff-devel-32bit-4.3.0-1.6 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:12057-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2022:1667-1</id>
    <title>SUSE-SU-2022:1667-1 — Security update for tiff</title>
    <updated>2026-10-02T20:06:01.008247+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for tiff</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2022:1667-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-0891</id>
    <title>UBUNTU-CVE-2022-0891</title>
    <updated>2026-10-02T20:06:01.008263+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: tiff, Ubuntu:Pro:16.04:LTS: tiff, Ubuntu:18.04:LTS: tiff, Ubuntu:20.04:LTS: tiff</p>
<p>A heap buffer overflow in ExtractImageSection function in tiffcrop.c in libtiff library Version 4.3.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into application crash, potential information disclosure or any other context-dependent impact</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-0891"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0922</id>
    <title>WID-SEC-W-2022-0922 — libTIFF: Mehrere Schwachstellen ermöglichen Denial of Service</title>
    <updated>2026-10-02T20:06:01.008285+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in libTIFF ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0922"/>
  </entry>
</feed>
