Exiv2

Exiv2

121 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.2%
  • Published 28.09.2018 09:29:00
  • Last modified 21.11.2024 03:54:38

CiffDirectory::readDirectory() at crwimage_int.cpp in Exiv2 0.26 has excessive stack consumption due to a recursive function, leading to Denial of service.

Exploit
  • EPSS 0.53%
  • Published 20.09.2018 20:29:01
  • Last modified 21.11.2024 03:54:10

An issue was discovered in Exiv2 v0.26. The function Exiv2::DataValue::copy in value.cpp has a NULL pointer dereference.

Exploit
  • EPSS 0.55%
  • Published 19.09.2018 22:29:00
  • Last modified 21.11.2024 03:54:07

Exiv2::d2Data in types.cpp in Exiv2 v0.26 allows remote attackers to cause a denial of service (heap-based buffer overflow) via a crafted image file.

Exploit
  • EPSS 0.55%
  • Published 19.09.2018 22:29:00
  • Last modified 21.11.2024 03:54:07

Exiv2::ul2Data in types.cpp in Exiv2 v0.26 allows remote attackers to cause a denial of service (heap-based buffer overflow) via a crafted image file.

  • EPSS 1.06%
  • Published 02.09.2018 03:29:00
  • Last modified 21.11.2024 03:52:33

Exiv2::Internal::PngChunk::parseTXTChunk in Exiv2 v0.26 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted image file, a different vulnerability than CVE-2018-10999.

Exploit
  • EPSS 0.41%
  • Published 17.07.2018 12:29:00
  • Last modified 21.11.2024 03:48:51

samples/geotag.cpp in the example code of Exiv2 0.26 misuses the realpath function on POSIX platforms (other than Apple platforms) where glibc is not used, possibly leading to a buffer overflow.

Exploit
  • EPSS 0.4%
  • Published 13.07.2018 15:29:00
  • Last modified 21.11.2024 03:48:30

Exiv2 0.26 has a heap-based buffer over-read in WebPImage::decodeChunks in webpimage.cpp.

Exploit
  • EPSS 0.77%
  • Published 13.06.2018 11:29:00
  • Last modified 21.11.2024 03:44:53

Exiv2 0.26 has integer overflows in LoaderTiff::getData() in preview.cpp, leading to an out-of-bounds read in Exiv2::ValueType::setDataArea in value.hpp.

Exploit
  • EPSS 0.77%
  • Published 13.06.2018 11:29:00
  • Last modified 21.11.2024 03:44:53

Exiv2 0.26 has an integer overflow in the LoaderExifJpeg class in preview.cpp, leading to an out-of-bounds read in Exiv2::MemIo::read in basicio.cpp.

Exploit
  • EPSS 0.26%
  • Published 29.05.2018 07:29:00
  • Last modified 21.11.2024 03:43:33

Exiv2 0.26 has a heap-based buffer overflow in getData in preview.cpp.