There exists one heap buffer overflow in TIFFmemcpy in tifunix.c in libtiff 4.0.10, which allows an attacker to cause a denial-of-service through a crafted tiff file.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-18768.json"