CVE-2017-7599: Libtiff
High severity, CVSS 7.8. EPSS: 2% chance of exploitation in the next 30 days.
LibTIFF 4.0.7 has an "outside the range of representable values of type short" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.
Affected products
- Libtiff Libtiff: version 4.0.7 only
Published 2017-04-09. Last modified 2026-06-17.