In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade RHEL:8
libtiff-tools
to version 0:4.0.9-20.el8 or higher.
This issue was patched in RHSA-2021:4241
.
Note: Versions mentioned in the description apply only to the upstream libtiff-tools
package and not the libtiff-tools
package as distributed by RHEL
.
See How to fix?
for RHEL:8
relevant fixed versions and status.
In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A crafted TIFF document can lead to an abort, resulting in a remote denial of service attack.