A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can lead to arbitrary code execution. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
History

Sat, 12 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00413}

epss

{'score': 0.00487}


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2021-03-09T19:17:54

Updated: 2024-08-04T17:02:08.235Z

Reserved: 2020-12-17T00:00:00

Link: CVE-2020-35524

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-03-09T20:15:13.040

Modified: 2024-11-21T05:27:29.840

Link: CVE-2020-35524

cve-icon Redhat

Severity : Moderate

Publid Date: 2020-12-14T00:00:00Z

Links: CVE-2020-35524 - Bugzilla