Skip to main content
Early Access
— Mondoo Vulnerability Intelligence is currently in preview.
Vulnerability Intelligence
Login
Get Demo
ELSA-2025-21407 | Mondoo Vulnerability Intelligence
Back to search
ELSA-2025-21407
UNKNOWN
ELSA-2025-21407: libtiff security update (IMPORTANT)
Published Dec 1, 2025
Modified 1 months ago
Fix available
Details
[4.0.3-35.0.1]
fix CVE-2025-8176: prevent skipping first line in tiffdither and tiffmedian tools [Orabug: 38658716]
fix CVE-2025-8177: buffer overflow thumbnail setrow [Orabug: 38658716]
fix CVE-2025-9900: buffer underflow crash in TIFFReadRGBAImageOriented() [Orabug: 38658716]
Affected Packages
OracleLinux:7
libtiff
Fixed in:
0:4.0.3-35.0.1.el7
OracleLinux:7
libtiff-devel
Fixed in:
0:4.0.3-35.0.1.el7
OracleLinux:7
libtiff-static
Fixed in:
0:4.0.3-35.0.1.el7
OracleLinux:7
libtiff-tools
Fixed in:
0:4.0.3-35.0.1.el7
Related
CVE-2025-8176
CVE-2025-8177
CVE-2025-9900
Ecosystems
OracleLinux 7
Timeline
Published
Dec 1, 2025
Modified
Dec 1, 2025