Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:19609 - Security Advisory
Issued:
2026-05-20
Updated:
2026-05-20

RHSA-2026:19609 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: libtiff security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for libtiff is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.

Security Fix(es):

  • libtiff: libtiff: Arbitrary code execution or denial of service via signed integer overflow in TIFF file processing (CVE-2026-4775)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - AUS 9.2 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x
  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2 aarch64
  • Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 ppc64le
  • Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2 s390x

Fixes

  • BZ - 2450768 - CVE-2026-4775 libtiff: libtiff: Arbitrary code execution or denial of service via signed integer overflow in TIFF file processing

CVEs

  • CVE-2026-4775

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - AUS 9.2

SRPM
libtiff-4.4.0-8.el9_2.5.src.rpm SHA-256: 80f07ada5ff0839657de0309cd5826497db1f89575f361c44a201466b23c5eaa
x86_64
libtiff-4.4.0-8.el9_2.5.i686.rpm SHA-256: a9d39dbbd032fb50aae51662ec4739fed5dd933d432846eee77ed4095fa2674f
libtiff-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: f6571314d6d650e171a6ea12e4964f7fad2ccbcc62d475a61b2b7e026f10db50
libtiff-debuginfo-4.4.0-8.el9_2.5.i686.rpm SHA-256: 64aa24a2a4eab3c49cc12be8bd451321849b1d11d3a28093bf086bf02d2ba091
libtiff-debuginfo-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 0dc3982c70d9777cbcf525c478a2574638c92a33e0e8dce7159adccd1f5dddd9
libtiff-debugsource-4.4.0-8.el9_2.5.i686.rpm SHA-256: 7fc30e6d3e2ed21e4e97836195daa91324b1708567335347d84a017d84694b8e
libtiff-debugsource-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 1177a08f00f8c320e1ad11e8d373539d251f7143943520dd2731605b72726b24
libtiff-devel-4.4.0-8.el9_2.5.i686.rpm SHA-256: 77cd7da0272e6fc607e18284c8521f7adb488f3f419f735904a135dc24b73c61
libtiff-devel-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 8e325d90e1b4f68d90a3aa0136754a4bdbdeb469318d08ac8a2baa589ee5854b
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.i686.rpm SHA-256: 6ef01a7c5b38de30eb79f66eaeca6ba99e021e344a61cf5b394fc9e966004682
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 11c18f49cb84f6619993a9f4c3f759b73119e246c0f97b88811e8dc9372e91fe

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2

SRPM
libtiff-4.4.0-8.el9_2.5.src.rpm SHA-256: 80f07ada5ff0839657de0309cd5826497db1f89575f361c44a201466b23c5eaa
ppc64le
libtiff-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: a456025f0ce5600e7dd53d1a43bc7fe0e13849e098583953489a93263bfbb97d
libtiff-debuginfo-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: 45ccef0aa5a68a6bbdbe2aacb5e3f1d8f663a4e84f434aa6ece4c1f6f0f9310c
libtiff-debugsource-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: 3b44b1b13ca022f4edf85ad01dbef19efafa994b4343f4ef71c9b7cf083f8d39
libtiff-devel-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: 5ce641e31d452e0aac7347eb50da6e8c9ff115df1d675baa36b7807885447ba9
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: 1cf5fb1b039f06dbd302924de596c65ac3aef6673843a75f99519d36ad6322e4

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2

SRPM
libtiff-4.4.0-8.el9_2.5.src.rpm SHA-256: 80f07ada5ff0839657de0309cd5826497db1f89575f361c44a201466b23c5eaa
x86_64
libtiff-4.4.0-8.el9_2.5.i686.rpm SHA-256: a9d39dbbd032fb50aae51662ec4739fed5dd933d432846eee77ed4095fa2674f
libtiff-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: f6571314d6d650e171a6ea12e4964f7fad2ccbcc62d475a61b2b7e026f10db50
libtiff-debuginfo-4.4.0-8.el9_2.5.i686.rpm SHA-256: 64aa24a2a4eab3c49cc12be8bd451321849b1d11d3a28093bf086bf02d2ba091
libtiff-debuginfo-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 0dc3982c70d9777cbcf525c478a2574638c92a33e0e8dce7159adccd1f5dddd9
libtiff-debugsource-4.4.0-8.el9_2.5.i686.rpm SHA-256: 7fc30e6d3e2ed21e4e97836195daa91324b1708567335347d84a017d84694b8e
libtiff-debugsource-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 1177a08f00f8c320e1ad11e8d373539d251f7143943520dd2731605b72726b24
libtiff-devel-4.4.0-8.el9_2.5.i686.rpm SHA-256: 77cd7da0272e6fc607e18284c8521f7adb488f3f419f735904a135dc24b73c61
libtiff-devel-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 8e325d90e1b4f68d90a3aa0136754a4bdbdeb469318d08ac8a2baa589ee5854b
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.i686.rpm SHA-256: 6ef01a7c5b38de30eb79f66eaeca6ba99e021e344a61cf5b394fc9e966004682
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 11c18f49cb84f6619993a9f4c3f759b73119e246c0f97b88811e8dc9372e91fe

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2

SRPM
libtiff-4.4.0-8.el9_2.5.src.rpm SHA-256: 80f07ada5ff0839657de0309cd5826497db1f89575f361c44a201466b23c5eaa
aarch64
libtiff-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: c95685e6c0da724962731f1438200ece12dee73ebbfae37b52390a2cb1fa3f36
libtiff-debuginfo-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: e48e888518b3ab01db1bad7514e5e984e3fb06b49abe2c15d1f5b056f78968eb
libtiff-debugsource-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: baff7d295467f6372e903658284ce083343b2097e13fd41ed44cb57b0bde3439
libtiff-devel-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: c6df3169c635218b1d4835348d3a7e89fbaecd6c5eeac00d8dd8437718436a65
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: c7ce9d291778909bd9805c38843b52df6556cc2d0147e67d9c53c6367863b8a8

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2

SRPM
libtiff-4.4.0-8.el9_2.5.src.rpm SHA-256: 80f07ada5ff0839657de0309cd5826497db1f89575f361c44a201466b23c5eaa
s390x
libtiff-4.4.0-8.el9_2.5.s390x.rpm SHA-256: 4e6a2e278ac99f7a796c0f65dab0e5e35b687523f3ff080ecc42f584f6ad24a0
libtiff-debuginfo-4.4.0-8.el9_2.5.s390x.rpm SHA-256: 01df752e335d5d4d19f9608e67fd289b7bb803e7d83b60154b9ff9b0f21c04cf
libtiff-debugsource-4.4.0-8.el9_2.5.s390x.rpm SHA-256: 974e6f8b0e3837537eabec0a2897fc94c35e8200eddaf7ff62e992ee9a71b59d
libtiff-devel-4.4.0-8.el9_2.5.s390x.rpm SHA-256: 531c900293492817ee0fe3a1f656003b885050648fa9c05b3f7ef1b8543cdf2d
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.s390x.rpm SHA-256: c769552e999239fad2357812ca8fc3ec450bc28c7fae4af81ba9a80df112d171

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2

SRPM
libtiff-4.4.0-8.el9_2.5.src.rpm SHA-256: 80f07ada5ff0839657de0309cd5826497db1f89575f361c44a201466b23c5eaa
x86_64
libtiff-4.4.0-8.el9_2.5.i686.rpm SHA-256: a9d39dbbd032fb50aae51662ec4739fed5dd933d432846eee77ed4095fa2674f
libtiff-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: f6571314d6d650e171a6ea12e4964f7fad2ccbcc62d475a61b2b7e026f10db50
libtiff-debuginfo-4.4.0-8.el9_2.5.i686.rpm SHA-256: 64aa24a2a4eab3c49cc12be8bd451321849b1d11d3a28093bf086bf02d2ba091
libtiff-debuginfo-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 0dc3982c70d9777cbcf525c478a2574638c92a33e0e8dce7159adccd1f5dddd9
libtiff-debugsource-4.4.0-8.el9_2.5.i686.rpm SHA-256: 7fc30e6d3e2ed21e4e97836195daa91324b1708567335347d84a017d84694b8e
libtiff-debugsource-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 1177a08f00f8c320e1ad11e8d373539d251f7143943520dd2731605b72726b24
libtiff-devel-4.4.0-8.el9_2.5.i686.rpm SHA-256: 77cd7da0272e6fc607e18284c8521f7adb488f3f419f735904a135dc24b73c61
libtiff-devel-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 8e325d90e1b4f68d90a3aa0136754a4bdbdeb469318d08ac8a2baa589ee5854b
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.i686.rpm SHA-256: 6ef01a7c5b38de30eb79f66eaeca6ba99e021e344a61cf5b394fc9e966004682
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.x86_64.rpm SHA-256: 11c18f49cb84f6619993a9f4c3f759b73119e246c0f97b88811e8dc9372e91fe

Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2

SRPM
libtiff-4.4.0-8.el9_2.5.src.rpm SHA-256: 80f07ada5ff0839657de0309cd5826497db1f89575f361c44a201466b23c5eaa
aarch64
libtiff-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: c95685e6c0da724962731f1438200ece12dee73ebbfae37b52390a2cb1fa3f36
libtiff-debuginfo-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: e48e888518b3ab01db1bad7514e5e984e3fb06b49abe2c15d1f5b056f78968eb
libtiff-debugsource-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: baff7d295467f6372e903658284ce083343b2097e13fd41ed44cb57b0bde3439
libtiff-devel-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: c6df3169c635218b1d4835348d3a7e89fbaecd6c5eeac00d8dd8437718436a65
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.aarch64.rpm SHA-256: c7ce9d291778909bd9805c38843b52df6556cc2d0147e67d9c53c6367863b8a8

Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2

SRPM
libtiff-4.4.0-8.el9_2.5.src.rpm SHA-256: 80f07ada5ff0839657de0309cd5826497db1f89575f361c44a201466b23c5eaa
ppc64le
libtiff-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: a456025f0ce5600e7dd53d1a43bc7fe0e13849e098583953489a93263bfbb97d
libtiff-debuginfo-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: 45ccef0aa5a68a6bbdbe2aacb5e3f1d8f663a4e84f434aa6ece4c1f6f0f9310c
libtiff-debugsource-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: 3b44b1b13ca022f4edf85ad01dbef19efafa994b4343f4ef71c9b7cf083f8d39
libtiff-devel-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: 5ce641e31d452e0aac7347eb50da6e8c9ff115df1d675baa36b7807885447ba9
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.ppc64le.rpm SHA-256: 1cf5fb1b039f06dbd302924de596c65ac3aef6673843a75f99519d36ad6322e4

Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2

SRPM
libtiff-4.4.0-8.el9_2.5.src.rpm SHA-256: 80f07ada5ff0839657de0309cd5826497db1f89575f361c44a201466b23c5eaa
s390x
libtiff-4.4.0-8.el9_2.5.s390x.rpm SHA-256: 4e6a2e278ac99f7a796c0f65dab0e5e35b687523f3ff080ecc42f584f6ad24a0
libtiff-debuginfo-4.4.0-8.el9_2.5.s390x.rpm SHA-256: 01df752e335d5d4d19f9608e67fd289b7bb803e7d83b60154b9ff9b0f21c04cf
libtiff-debugsource-4.4.0-8.el9_2.5.s390x.rpm SHA-256: 974e6f8b0e3837537eabec0a2897fc94c35e8200eddaf7ff62e992ee9a71b59d
libtiff-devel-4.4.0-8.el9_2.5.s390x.rpm SHA-256: 531c900293492817ee0fe3a1f656003b885050648fa9c05b3f7ef1b8543cdf2d
libtiff-tools-debuginfo-4.4.0-8.el9_2.5.s390x.rpm SHA-256: c769552e999239fad2357812ca8fc3ec450bc28c7fae4af81ba9a80df112d171

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility