CVE-2016-5321: Libtiff

Medium severity, CVSS 6.5. EPSS: 2.4% chance of exploitation in the next 30 days.

The DumpModeDecode function in libtiff 4.0.6 and earlier allows attackers to cause a denial of service (invalid read and crash) via a crafted tiff image.

Affected products

  • Libtiff Libtiff: up to and including 4.0.6
  • Opensuse Opensuse: version 13.1 only

Published 2017-01-20. Last modified 2026-06-17.