ELSA-2025-19113

ELSA-2025-19113 - libtiff security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2025-10-28

Description


[4.4.0-13.2]
- fix CVE-2025-8176 off-by-one error skipping first line in tiffdither
and tiffmedian
- Resolves: RHEL-120243

[4.4.0-13.1]
- fix CVE-2025-9900 buffer underflow in TIFFReadRGBAImageOriented
- Resolves: RHEL-112542


Related CVEs


CVE-2025-9900
CVE-2025-8176

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) libtiff-4.4.0-13.el9_6.2.src.rpm85b0caad87c64a0db5495a9f894ffc103e73f7b0dfb4b12dc0d4353d7469a2d5-ol9_aarch64_appstream
libtiff-4.4.0-13.el9_6.2.src.rpm85b0caad87c64a0db5495a9f894ffc103e73f7b0dfb4b12dc0d4353d7469a2d5-ol9_aarch64_codeready_builder
libtiff-4.4.0-13.el9_6.2.aarch64.rpmd58ce40a6acf7e14953dbd3e5726eb2706642018ad3f795150025e8a3d028e76-ol9_aarch64_appstream
libtiff-devel-4.4.0-13.el9_6.2.aarch64.rpmd632e66e2c21fc36b1cdd6e8af6bfa95fd20a08a379d942c33e32f20e174d42b-ol9_aarch64_appstream
libtiff-tools-4.4.0-13.el9_6.2.aarch64.rpm7d881c9777e4324e6dddd9cbad7206901bb4bed57aa41f84ac0a256ceeb7ada5-ol9_aarch64_codeready_builder
Oracle Linux 9 (x86_64) libtiff-4.4.0-13.el9_6.2.src.rpm85b0caad87c64a0db5495a9f894ffc103e73f7b0dfb4b12dc0d4353d7469a2d5-ol9_x86_64_appstream
libtiff-4.4.0-13.el9_6.2.src.rpm85b0caad87c64a0db5495a9f894ffc103e73f7b0dfb4b12dc0d4353d7469a2d5-ol9_x86_64_codeready_builder
libtiff-4.4.0-13.el9_6.2.i686.rpm474aaa357c1272e1e1a8c01d3aff259e6391b071eaf31a0c2ef07af2164e1f1c-ol9_x86_64_appstream
libtiff-4.4.0-13.el9_6.2.x86_64.rpmab45d8b222018f92e6e8583d3f5fc24c492373c408d3e2513821747c6cc7dafa-ol9_x86_64_appstream
libtiff-devel-4.4.0-13.el9_6.2.i686.rpmb340e4776a0be422b53ce098b53742163ecb73ab629f17a662186ed927e5ff9e-ol9_x86_64_appstream
libtiff-devel-4.4.0-13.el9_6.2.x86_64.rpm9188d991dae286000875a69ee0fccd1f30723a0cb34f2078e2216848b0075993-ol9_x86_64_appstream
libtiff-tools-4.4.0-13.el9_6.2.x86_64.rpm81f0ca98be0b9895f71e33e052c8017b5d70dd867a8b0f91067cc9502abfaf93-ol9_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete