Multiple integer overflows were found in writeBufferToSeparateStrips(), writeBufferToContigTiles() and writeBufferToSeparateTiles() that could lead to out-of-bounds heap read.
Created libtiff tracking bugs for this issue:
Affects: fedora-all [bug 1397781]
Created mingw-libtiff tracking bugs for this issue:
Affects: fedora-all [bug 1397782]
Affects: epel-7 [bug 1397783]