Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff versions from 3.9.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, the fix is available with commit eecb0712.
[
{
"source": "https://gitlab.com/freedesktop-sdk/mirrors/gitlab/libtiff/libtiff@eecb0712f4c3a5b449f70c57988260a667ddbdef",
"target": {
"function": "TIFFFetchStripThing",
"file": "libtiff/tif_dirread.c"
},
"deprecated": false,
"id": "CVE-2022-0561-89db7e88",
"signature_version": "v1",
"signature_type": "Function",
"digest": {
"length": 1259.0,
"function_hash": "225260569226593337854214569939011471238"
}
},
{
"source": "https://gitlab.com/freedesktop-sdk/mirrors/gitlab/libtiff/libtiff@eecb0712f4c3a5b449f70c57988260a667ddbdef",
"target": {
"file": "libtiff/tif_dirread.c"
},
"deprecated": false,
"id": "CVE-2022-0561-8efdedfe",
"signature_version": "v1",
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"80521516397946030531103059465007775525",
"227366162166277127987313849463608651928",
"227429221493257104158645547355081559985",
"161621442614744863726198903650384197476",
"281928727460335330136340000435100795434"
]
}
}
]