CVE-2020-18768: Libtiff

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

There exists one heap buffer overflow in _TIFFmemcpy in tif_unix.c in libtiff 4.0.10, which allows an attacker to cause a denial-of-service through a crafted tiff file.

Affected products

  • Libtiff Libtiff: version 4.0.10 only

Published 2023-08-22. Last modified 2026-06-17.