CVE-2025-8961
LOWLibtiff - Memory Corruption
Title source: ruleDescription
A weakness has been identified in LibTIFF 4.7.0. This affects the function main of the file tiffcrop.c of the component tiffcrop. Executing manipulation can lead to memory corruption. The attack can only be executed locally. The exploit has been made available to the public and could be exploited.
References (7)
Scores
CVSS v3
3.3
EPSS
0.0003
EPSS Percentile
8.9%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Classification
CWE
CWE-119
Status
published
Affected Products (1)
libtiff/libtiff
Timeline
Published
Aug 14, 2025
Tracked Since
Feb 18, 2026