Multiple integer overflows in tiff2pdf in libtiff before 4.0.2 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted tiff image, which triggers a heap-based buffer overflow.
Exploitability
AV:NAC:MAu:NImpact
C:PI:PA:P6.8/AV:N/AC:M/Au:N/C:P/I:P/A:P