CVE-2026-35591
概要

libvips is a fast image processing library with low memory needs. The `tiffload` operation in libvips versions before and including 8.18.1 could incorrectly determine the number of channels in a JPEG or JPEG2000-encoded tile within a TIFF image, leading to a possible buffer overflow. This has been patched in version 8.18.2.

公表日 2026年7月21日2:17
登録日 2026年7月21日4:30
最終更新日 2026年7月21日3:16
関連情報、対策とツール
共通脆弱性一覧