CVE-2017-17973: Libtiff
High severity, CVSS 8.8. EPSS: 3.1% chance of exploitation in the next 30 days.
In LibTIFF 4.0.8, there is a heap-based use-after-free in the t2p_writeproc function in tiff2pdf.c. NOTE: there is a third-party report of inability to reproduce this issue
Affected products
- Libtiff Libtiff: version 4.0.8 only
Published 2017-12-29. Last modified 2026-06-17.