<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 12:47:21 +0000</lastBuildDate>
    <item>
      <title>ALSA-2025:19113 — Important: libtiff security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2025:19113</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: libtiff, AlmaLinux:9: libtiff-devel, AlmaLinux:9: libtiff-tools&lt;/p&gt;
&lt;p&gt;The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libtiff: LibTIFF Use-After-Free Vulnerability (CVE-2025-8176)
  * libtiff: Libtiff Write-What-Where (CVE-2025-9900)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: libtiff, AlmaLinux:9: libtiff-devel, AlmaLinux:9: libtiff-tools&lt;/p&gt;
&lt;p&gt;The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libtiff: LibTIFF Use-After-Free Vulnerability (CVE-2025-8176)
  * libtiff: Libtiff Write-What-Where (CVE-2025-9900)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2025:19113</guid>
    </item>
    <item>
      <title>bdu:2025-13919</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-13919</link>
      <description>bdu:2025-13919</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-13919</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-8176</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-8176</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: tiff, Alpaquita:25: tiff, Alpaquita:stream: tiff, BellSoft Hardened Containers:23: tiff, BellSoft Hardened Containers:25: tiff, BellSoft Hardened Containers:stream: tiff&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: tiff, Alpaquita:25: tiff, Alpaquita:stream: tiff, BellSoft Hardened Containers:23: tiff, BellSoft Hardened Containers:25: tiff, BellSoft Hardened Containers:stream: tiff&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-8176</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0938 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0938</link>
      <description>certfr-2025-avi-0938</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0938</guid>
    </item>
    <item>
      <title>EUVD-2026-248518</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-248518</link>
      <description>EUVD-2026-248518</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-248518</guid>
    </item>
    <item>
      <title>fkie_cve-2025-8176</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-8176</link>
      <description>&lt;p&gt;A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-8176</guid>
    </item>
    <item>
      <title>GHSA-gvgc-3ch5-px8p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-gvgc-3ch5-px8p</link>
      <description>&lt;p&gt;A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-gvgc-3ch5-px8p</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-8176 — LibTIFF tiffmedian.c get_histogram use after free</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-8176</link>
      <description>msrc_CVE-2025-8176</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-8176</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15417-1 — libtiff-devel-32bit-4.7.0-7.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15417-1</link>
      <description>&lt;p&gt;libtiff-devel-32bit-4.7.0-7.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libtiff-devel-32bit-4.7.0-7.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15417-1</guid>
    </item>
    <item>
      <title>RHSA-2025:19906 — Red Hat Security Advisory: mingw-libtiff security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:19906</link>
      <description>&lt;p&gt;libtiff: LibTIFF Use-After-Free Vulnerability libtiff: Libtiff Write-What-Where&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libtiff: LibTIFF Use-After-Free Vulnerability libtiff: Libtiff Write-What-Where&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:19906</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:02771-1 — Security update for tiff</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:02771-1</link>
      <description>&lt;p&gt;Security update for tiff&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for tiff&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:02771-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-8176</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-8176</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: tiff, Ubuntu:Pro:16.04:LTS: tiff, Ubuntu:Pro:18.04:LTS: tiff, Ubuntu:Pro:20.04:LTS: tiff, Ubuntu:22.04:LTS: tiff, Ubuntu:24.04:LTS: tiff&lt;/p&gt;
&lt;p&gt;A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: tiff, Ubuntu:Pro:16.04:LTS: tiff, Ubuntu:Pro:18.04:LTS: tiff, Ubuntu:Pro:20.04:LTS: tiff, Ubuntu:22.04:LTS: tiff, Ubuntu:24.04:LTS: tiff&lt;/p&gt;
&lt;p&gt;A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get_histogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-8176</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1654 — libTIFF (Tiffmedian, Thumbnail): Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1654</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in libTIFF ausnutzen, um nicht spezifizierte Angriffe auszuführen, möglicherweise um beliebigen Code auszuführen, Speicherverfälschung zu verursachen, vertrauliche Informationen preiszugeben oder einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in libTIFF ausnutzen, um nicht spezifizierte Angriffe auszuführen, möglicherweise um beliebigen Code auszuführen, Speicherverfälschung zu verursachen, vertrauliche Informationen preiszugeben oder einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1654</guid>
    </item>
  </channel>
</rss>
