CVE-2025-61144Disclosure(libtiff / libtiff)

LOWCVSS 7.3 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch libtiff libtiff systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • libtiff

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 5 signals
  • Disclosure: 3 classified signals
  • Peaked at 2 mentions on most recent observed day (2026-03-23)
  • 5 total mentions across 4 days

Affected systems

Vendors
Products
libtiff

Deep dive

Activity timeline5 mentions / 4d
01122Mentions · 2026-02-24: 1Mentions · 2026-02-27: 1Mentions · 2026-02-28: 1Mentions · 2026-03-23: 2Patch / Workaround · 2026-03-23: 2Technical Details · 2026-02-24: 1Technical Details · 2026-02-27: 1Technical Details · 2026-02-28: 1Technical Details · 2026-03-23: 202-2402-2702-2803-23
Signal classification2 categories
Disclosure
360.0%
Patch
240.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-02-241
Disclosure1
2026-02-271
Disclosure1
2026-02-281
Disclosure1
2026-03-232
Patch2
Full discourse5 posts
  • Ferramentas Linux@Cezar_H_Linux
    Patch

    Critical LibTIFF DoS vulnerabilities (CVE-2025-61143, CVE-2025-61144) patched for #Ubuntu 25.10, 24.04 LTS, 22.04 LTS, and earlier releases with Ubuntu Pro. Read more: 👉 https://tinyurl.com/yenkmaar #Security https://t.co/OzlfoSfvsJ

    Post summary

    Ubuntu has released patches for the critical LibTIFF DoS vulnerabilities CVE-2025-61143 and CVE-2025-61144 across multiple releases, and the tweet directs users to read more via a provided link.

    0001098
    1.5K followersView on X
  • Ferramentas Linux@Cezar_H_Linux
    Patch

    🚨 URGENT: #Ubuntu Security Update 🚨 Patch now for LibTIFF DoS flaws (CVE-2025-61143, CVE-2025-61144) affecting Ubuntu 25.10 down to 14.04 LTS. Read more: 👉 https://tinyurl.com/ue8e2zbv #Security https://t.co/V7Cy3C0JeI

    Post summary

    The tweet announces an urgent Ubuntu patch for two LibTIFF denial‑of‑service vulnerabilities (CVE-2025-61143 & CVE-2025-61144) affecting versions from 14.04 LTS to 25.10, with no exploitation or PoC details provided.

    00000123
    1.5K followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-61144 (CVSS:7.3, HIGH) is Modified. libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function...https://nvd.nist.gov/vuln/detail/CVE-2025-61144 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post discloses a stack overflow vulnerability in libtiff (CVE‑2025‑61144) with CVSS 7.3, but it provides no PoC, exploit code, patch details, or evidence of active exploitation.

    0000071
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-61144 (CVSS:7.3, HIGH) is Modified. libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function...https://nvd.nist.gov/vuln/detail/CVE-2025-61144 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post discloses CVE-2025-61144 as a high-severity stack overflow vulnerability in libtiff up to v4.7.1 via readSeparateStripsIntoBuffer, but provides no PoC, exploit, patch, or evidence of active exploitation.

    0000017
    173 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-61144 libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function. https://www.cve.org/CVERecord?id=CVE-2025-61144

    Post summary

    The CVE-2025-61144 vulnerability in libtiff up to v4.7.1 is a stack overflow triggered by the readSeparateStripsIntoBuffer function, with no PoC, exploit, or patch details provided.

    00000123
    56.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Applibtifflibtiff---

Explore more