A long‑running memory‑safety defect in the LibTIFF image library — tracked as CVE‑2016‑9535 — is a classic predictor heap‑buffer‑overflow that affected LibTIFF 4.0.6 and earlier, was patched by the upstream project, and continues to be cited in downstream advisories and Linux distributions as an...
The LibTIFF codebase contains a long‑standing, practical memory‑safety defect tracked as CVE‑2016‑9535 — a heap buffer overflow in the predictor/tile handling code — that was introduced in the 4.0.6 release and patched in subsequent versions. This vulnerability arises in tif_predict.c /...