CVE-2026-52492

An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result in an undersized heap allocation and subsequent heap-based buffer overflow during YCbCr conversion of a crafted TIFF image
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-24 21:17

Updated : 2026-09-09 16:03


NVD link : CVE-2026-52492

Mitre link : CVE-2026-52492

CVE.ORG link : CVE-2026-52492


JSON object : View

Products Affected

No product.

CWE
CWE-190

Integer Overflow or Wraparound