libtiff-4.0.9-39.el8_10

エラータID: AXSA:2026-1889:10

Release date: 
Wednesday, September 23, 2026 - 19:07
Subject: 
libtiff-4.0.9-39.el8_10
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
High
Description: 

The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.

Security Fix(es):

* libtiff: libtiff: Arbitrary code execution via process_command_opts() function (CVE-2026-52490)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2026-52490
An issue in libtiff 85f2ac8e0b01cb7db2bbecf4a3b891bdbef67938 allows an attacker to execute arbitrary code via the process_command_opts() function in tools/tiffcrop.c

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. libtiff-4.0.9-39.el8_10.src.rpm
    MD5: 24b65873188af6f7eafcd3d5ec01bb7f
    SHA-256: 3eb8f6f762f646c44127196ea60efbf0467568c4c1480cb990342c6a7e8c2f04
    Size: 2.28 MB

Asianux Server 8 for x86_64
  1. libtiff-4.0.9-39.el8_10.i686.rpm
    MD5: 5daf39384a7d5acdcaf914e229993e06
    SHA-256: 0cafc55a62c184952bf63e2a2595609bcb18ac070aea30169a9c1b14e5091463
    Size: 205.01 kB
  2. libtiff-4.0.9-39.el8_10.x86_64.rpm
    MD5: a9686a8aa253a0e6443f625e832fb48d
    SHA-256: 9dc8c009acaf341865e68f35ccc1a0a9f430e288dbc155d7e567469284cbfa48
    Size: 190.02 kB
  3. libtiff-devel-4.0.9-39.el8_10.i686.rpm
    MD5: b03b601ace1adc3801cb849c1d72b71f
    SHA-256: c1b95398a5ed46cf9720a49f10903a8a703399827be1dd1db30d36f8fdeb14b3
    Size: 512.73 kB
  4. libtiff-devel-4.0.9-39.el8_10.x86_64.rpm
    MD5: 872877b786bec8a2960a458c13183cb3
    SHA-256: 347f40e576414b63442dcacdfe94d6c014614caf293a7dfb9fee8c20d5c90f64
    Size: 512.72 kB
  5. libtiff-tools-4.0.9-39.el8_10.x86_64.rpm
    MD5: 41e94c4a27c31cc65ed761633d81d1aa
    SHA-256: 53b315542eab4764b7d61ee6de32c9fd12139c816e785f5203b6e5ce98a9f255
    Size: 256.11 kB