Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the "TIFFVGetField" funtion in the component 'libtiff/tif_dir.c'.
References
- http://bugzilla.maptools.org/show_bug.cgi?id=2851
- http://bugzilla.maptools.org/show_bug.cgi?id=2851
- https://gitlab.com/libtiff/libtiff/-/issues/158
- https://gitlab.com/libtiff/libtiff/-/issues/158
- https://gitlab.com/libtiff/libtiff/-/merge_requests/119
- https://gitlab.com/libtiff/libtiff/-/merge_requests/119
- https://security.netapp.com/advisory/ntap-20211004-0005/
- https://security.netapp.com/advisory/ntap-20211004-0005/
- https://www.debian.org/security/2021/dsa-4997
- https://www.debian.org/security/2021/dsa-4997