libtiff up to v4.7.1 was discovered to contain a NULL pointer dereference via the component libtiff/tif_open.c.
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-78308.json"