Loading HuntDB...

GHSA-g995-h8wx-7qw6

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to dereference a NULL pointer when decompressing a TIFF format file, resulting in a program crash or denial of service.

Related CVEs

Key Information

GHSA ID
GHSA-g995-h8wx-7qw6
Published
May 18, 2023 12:30 AM
Last Modified
April 4, 2024 4:14 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 20, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.