tif_dirread.c in LibTIFF has an "outside the range of representable values of type float" undefined behavior issue, which might allow attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image. Upstream bug: http://bugzilla.maptools.org/show_bug.cgi?id=2643 Upstream patch: https://github.com/vadz/libtiff/commit/3144e57770c1e4d26520d8abee750f8ac8b75490
Created mingw-libtiff tracking bugs for this issue: Affects: fedora-all [bug 1438465]
Created mingw-libtiff tracking bugs for this issue: Affects: epel-7 [bug 1438466]
Created libtiff tracking bugs for this issue: Affects: fedora-all [bug 1441273]