CVE-2025-8851 | LibTIFF up to 4.5.1 tiffcrop tools/tiffcrop.c readSeparateStripsetoBuffer stack-based overflow (Nessus ID 253529 / WID-SEC-2025-1756)
A vulnerability classified as critical has been found in LibTIFF up to 4.5.1. The impacted element is the function readSeparateStripsetoBuffer of the file tools/tiffcrop.c of the component tiffcrop. This manipulation causes stack-based buffer overflow.
This vulnerability is handled as CVE-2025-8851. It is possible to launch the attack on the local host. There is not any exploit available.
Applying a patch is the recommended action to fix this issue.