Heap-based buffer overflow in the readgifimage function in the gif2tiff tool in libtiff 4.0.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted height and width values in a GIF image.
No PoCs from references.
- https://github.com/mudongliang/LinuxFlaw
- https://github.com/oneoy/cve-