CVE-2023-6277: Fedoraproject Fedora

Medium severity, CVSS 6.5. EPSS: 1.8% chance of exploitation in the next 30 days.

An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to cause a denial of service via a craft input with size smaller than 379 KB.

Affected products

Published 2023-11-24. Last modified 2026-06-17.