ThreatCluster

Multiple CVEs Discovered in libtiff Affecting Versions up to 4.7.1

First seen 26 Feb 2026, 09:11 UTC Api.Msrc.Microsoft 77% similarity 41

Article Content

Browse articles
ThreatCluster

Two vulnerabilities have been identified in the libtiff library, affecting versions up to 4.7.1. CVE-2025-61145 involves a double free in tools/tiffcrop.c, while CVE-2025-61143 is related to a NULL pointer dereference in libtiff/tif_open.c. Both vulnerabilities were published on February 23, 2026.

ThreatCluster AI How this analysis works

Timeline

2026-02-23
CVE-2025-61145 published
2026-02-23
CVE-2025-61143 published
2026-02-26
Articles published detailing the vulnerabilities

Community

Browse all →