tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image.
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2016-3625.json"