[ALSA-2026:41892] Important: libtiff security, bug fix, and enhancement update
Type:
security
Severity:
important
Release date:
2026-07-20
Description:
The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files. Security Fix(es): * libtiff: TIFFRasterScanlineSize64 produce too-big size and could cause OOM (CVE-2023-52355) * libtiff: libtiff: Heap-based buffer overflow via crafted PixarLog-compressed TIFF image (CVE-2026-12912) Bug Fix(es) and Enhancement(s): * Reintroduce the `tiffcp -i` option (JIRA:AlmaLinux-185328) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libtiff-devel-4.6.0-8.el10_2.4.aarch64.rpm 55aa13d9f6c3ac04642cf66eff904c150232ba2184b9948a95b711b6daa5f89b
aarch64 libtiff-4.6.0-8.el10_2.4.aarch64.rpm 96718d60a21ab60c5c5912df9507c0449031eb028cb29b600a1e54395b85d84e
aarch64 libtiff-tools-4.6.0-8.el10_2.4.aarch64.rpm b5cabe550e184560f0a3cf1b74b3f4079f21605a64b04d9f21628c30b104861c
ppc64le libtiff-devel-4.6.0-8.el10_2.4.ppc64le.rpm 0371f2e9da66b221f372baed418a9f912cad92e9eeddf91a6b96c2841a182390
ppc64le libtiff-tools-4.6.0-8.el10_2.4.ppc64le.rpm 5996bd684370207f68e34c13fbb97f55d7dcf528b7b6d0c730387ea71009e832
ppc64le libtiff-4.6.0-8.el10_2.4.ppc64le.rpm 5d32581bea49b1da4ae1a8e4cafa97b4b2164c0cc463acb83ed3d7edfc122fc1
s390x libtiff-4.6.0-8.el10_2.4.s390x.rpm 1bbb5bb4f478985d3be01036667a6a17eea589036faae9c52e707dc75dc6b5b4
s390x libtiff-tools-4.6.0-8.el10_2.4.s390x.rpm 2a58ce1cba81f8fefc3dcc05147598147856675c4cfcd0e66d92233f0ffe04cc
s390x libtiff-devel-4.6.0-8.el10_2.4.s390x.rpm 35931a423c872e10add819d542fe94baa21f8bc0983754a64835dd46825fa499
x86_64 libtiff-devel-4.6.0-8.el10_2.4.x86_64.rpm 4e6f9634a30002ea8cb5003014bfc7adc22deb985434a3b468e8db3f6c207469
x86_64 libtiff-4.6.0-8.el10_2.4.x86_64.rpm 4f32c74d6599208ec88b92e2f927e052603d08f4ed9070efb991eed9614f2213
x86_64 libtiff-tools-4.6.0-8.el10_2.4.x86_64.rpm 9086687fb2c23049f24ce03b4b32be5bb18c37894adc55d4e08d582c6b62e90f
x86_64_v2 libtiff-tools-4.6.0-8.el10_2.4.x86_64_v2.rpm 7249a80e6718ac756502f9d94877587b9617265d0db318f347c0260e59b0fdcb
x86_64_v2 libtiff-devel-4.6.0-8.el10_2.4.x86_64_v2.rpm 8b13ab18868edbbad1f250c53345c2120e3adf12a46979a085c14e6bc0492309
x86_64_v2 libtiff-4.6.0-8.el10_2.4.x86_64_v2.rpm cdbd80887d980d5bef58853094b48aa7a48560bb501799b674f143ae8c228e15
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.