tif_pixarlog.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers. Reported as MSVR 35094, aka "PixarLog horizontalDifference heap-buffer-overflow."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.2%