Loading
tif_getimage.c in LibTIFF through 4.0.10, as used in GDAL through 3.0.1 and other products, has an integer overflow that potentially causes a heap-based buffer overflow via a crafted RGBA image, related to a "Negative-size-param" condition.
Use CWE-190, Libtiff vendor hub and Libtiff product page to widen CVE-2019-17546 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-4775, CVE-2024-7006 and CVE-2025-61144 for nearby disclosures in the same product family.