rotateImage of the file tiffcrop.c. The manipulation results in incorrect calculation of buffer size.
This vulnerability is reported as CVE-2022-2520. The attack can be launched remotely. No exploit exists.
It is best practice to apply a patch to resolve this issue.
Intelligence View
SOCIAL SHARE CARD GENERATOR