CVE-2013-4232: Debian Linux

Medium severity, CVSS 6.8. EPSS: 5% chance of exploitation in the next 30 days.

Use-after-free vulnerability in the t2p_readwrite_pdf_image function in tools/tiff2pdf.c in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted TIFF image.

Affected products

  • Debian Debian Linux: version 6.0 only; version 7.0 only
  • Libtiff Libtiff: version 4.0.3 only

Published 2013-09-10. Last modified 2026-06-16.