The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image. https://nvd.nist.gov/vuln/detail/CVE-2016-5322