[CLSA-2026:1778090588] libtiff: Fix of CVE-2026-4775
Type:
security
Severity:
Important
Release date:
2026-05-06 18:03:13 UTC
Description:
- CVE-2026-4775: fix signed integer overflow in YCbCr tile decoder helpers in TIFFReadRGBAImage() that could lead to heap overflow on crafted images with huge width
Updated packages:
  • libtiff-4.4.0-13.el9_6.2.tuxcare.els7.i686.rpm
    sha:de3e2774b40e99eb3b8425bc4e9d3ab937a2cd8f24fdd2ae4b19d2aa6ca31a6b
  • libtiff-4.4.0-13.el9_6.2.tuxcare.els7.x86_64.rpm
    sha:aaf0fcd3b0a4a587fd3f10ad25032ad7e6ed61d5d42d66b4d7147c103731f64a
  • libtiff-devel-4.4.0-13.el9_6.2.tuxcare.els7.i686.rpm
    sha:8d92387ba3d3240275cf782f1af913b21d106a1293d4f84cfb2551102099d0c9
  • libtiff-devel-4.4.0-13.el9_6.2.tuxcare.els7.x86_64.rpm
    sha:3e2861ec79769f3960a2a210302686b1ac12c0d4ca46aa1c3580270542d5f982
  • libtiff-static-4.4.0-13.el9_6.2.tuxcare.els7.x86_64.rpm
    sha:e4059f88aaa61f565e97e7599b7de49b7b18450442afdb9100fc1b292b439255
  • libtiff-tools-4.4.0-13.el9_6.2.tuxcare.els7.x86_64.rpm
    sha:43fac6e4ba77d1f3d97c9d943097cc4760711d1c92164f3404661b6fee90c82b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.