Red Hat Bugzilla – Bug 1535494
CVE-2018-5360 LibTIFF: heap-based buffer over-read in the ReadTIFFImage function in coders/tiff.c
Last modified: 2018-01-17 09:18:50 EST
LibTIFF before 4.0.6 mishandles the reading of TIFF files, as demonstrated by a heap-based buffer over-read in the ReadTIFFImage function in coders/tiff.c in GraphicsMagick 1.3.27. Reference: https://sourceforge.net/p/graphicsmagick/bugs/540/
Created mingw-libtiff tracking bugs for this issue: Affects: epel-7 [bug 1535507]