Total
117 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2019-13108 | 2 Exiv2, Fedoraproject | 2 Exiv2, Fedora | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
An integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (SIGSEGV) via a crafted PNG image file, because PngImage::readMetadata mishandles a zero value for iccOffset. | |||||
CVE-2019-14370 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
In Exiv2 0.27.99.0, there is an out-of-bounds read in Exiv2::MrwImage::readMetadata() in mrwimage.cpp. It could result in denial of service. | |||||
CVE-2019-13504 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
There is an out-of-bounds read in Exiv2::MrwImage::readMetadata in mrwimage.cpp in Exiv2 through 0.27.2. | |||||
CVE-2019-13111 | 2 Exiv2, Fedoraproject | 2 Exiv2, Fedora | 2024-02-04 | 4.3 MEDIUM | 5.5 MEDIUM |
A WebPImage::decodeChunks integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (large heap allocation followed by a very long running loop) via a crafted WEBP image file. | |||||
CVE-2019-14982 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
In Exiv2 before v0.27.2, there is an integer overflow vulnerability in the WebPImage::getHeaderOffset function in webpimage.cpp. It can lead to a buffer overflow vulnerability and a crash. | |||||
CVE-2019-14369 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
Exiv2::PngImage::readMetadata() in pngimage.cpp in Exiv2 0.27.99.0 allows attackers to cause a denial of service (heap-based buffer over-read) via a crafted image file. | |||||
CVE-2019-13113 | 3 Canonical, Exiv2, Fedoraproject | 3 Ubuntu Linux, Exiv2, Fedora | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
Exiv2 through 0.27.1 allows an attacker to cause a denial of service (crash due to assertion failure) via an invalid data location in a CRW image file. | |||||
CVE-2018-14046 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 6.8 MEDIUM | 8.8 HIGH |
Exiv2 0.26 has a heap-based buffer over-read in WebPImage::decodeChunks in webpimage.cpp. | |||||
CVE-2018-17229 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
Exiv2::d2Data in types.cpp in Exiv2 v0.26 allows remote attackers to cause a denial of service (heap-based buffer overflow) via a crafted image file. | |||||
CVE-2018-17581 | 3 Canonical, Debian, Exiv2 | 3 Ubuntu Linux, Debian Linux, Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
CiffDirectory::readDirectory() at crwimage_int.cpp in Exiv2 0.26 has excessive stack consumption due to a recursive function, leading to Denial of service. | |||||
CVE-2019-9143 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 6.8 MEDIUM | 8.8 HIGH |
An issue was discovered in Exiv2 0.27. There is infinite recursion at Exiv2::Image::printTiffStructure in the file image.cpp. This can be triggered by a crafted file. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact. | |||||
CVE-2018-17282 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
An issue was discovered in Exiv2 v0.26. The function Exiv2::DataValue::copy in value.cpp has a NULL pointer dereference. | |||||
CVE-2018-20096 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
There is a heap-based buffer over-read in the Exiv2::tEXtToDataBuf function of pngimage.cpp in Exiv2 0.27-RC3. A crafted input will lead to a remote denial of service attack. | |||||
CVE-2018-18915 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
There is an infinite loop in the Exiv2::Image::printIFDStructure function of image.cpp in Exiv2 0.27-RC1. A crafted input will lead to a remote denial of service attack. | |||||
CVE-2018-19535 | 2 Debian, Exiv2 | 2 Debian Linux, Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
In Exiv2 0.26 and previous versions, PngChunk::readRawProfile in pngchunk_int.cpp may cause a denial of service (application crash due to a heap-based buffer over-read) via a crafted PNG file. | |||||
CVE-2018-20099 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
There is an infinite loop in Exiv2::Jp2Image::encodeJp2Header of jp2image.cpp in Exiv2 0.27-RC3. A crafted input will lead to a remote denial of service attack. | |||||
CVE-2018-17230 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
Exiv2::ul2Data in types.cpp in Exiv2 v0.26 allows remote attackers to cause a denial of service (heap-based buffer overflow) via a crafted image file. | |||||
CVE-2018-19607 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
Exiv2::isoSpeed in easyaccess.cpp in Exiv2 v0.27-RC2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file. | |||||
CVE-2018-14338 | 1 Exiv2 | 1 Exiv2 | 2024-02-04 | 6.8 MEDIUM | 8.1 HIGH |
samples/geotag.cpp in the example code of Exiv2 0.26 misuses the realpath function on POSIX platforms (other than Apple platforms) where glibc is not used, possibly leading to a buffer overflow. | |||||
CVE-2018-19108 | 2 Debian, Exiv2 | 2 Debian Linux, Exiv2 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
In Exiv2 0.26, Exiv2::PsdImage::readMetadata in psdimage.cpp in the PSD image reader may suffer from a denial of service (infinite loop) caused by an integer overflow via a crafted PSD image file. |