CVE-2023-6277: Fedoraproject Fedora
Medium severity, CVSS 6.5. EPSS: 1.8% chance of exploitation in the next 30 days.
An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to cause a denial of service via a craft input with size smaller than 379 KB.
Affected products
- Fedoraproject Fedora: version 38 only
- Libtiff Libtiff: affected versions not specified
Published 2023-11-24. Last modified 2026-06-17.