CVE-2021-29623
- EPSS 0.31%
- Veröffentlicht 13.05.2021 17:15:07
- Zuletzt bearbeitet 21.11.2024 06:01:31
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. A read of uninitialized memory was found in Exiv2 versions v0.27.3 and earlier. Exiv2 is a command-line utility and C++ librar...
CVE-2021-29463
- EPSS 0.1%
- Veröffentlicht 30.04.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:01:09
Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 versions v0.27.3 and earlier. The out-of-bounds read is triggered when Exiv2 is used t...
CVE-2021-29464
- EPSS 0.16%
- Veröffentlicht 30.04.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:01:10
Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. A heap buffer overflow was found in Exiv2 versions v0.27.3 and earlier. The heap overflow is triggered when Exiv2 is used to wr...
CVE-2021-29473
- EPSS 0.14%
- Veröffentlicht 26.04.2021 19:15:08
- Zuletzt bearbeitet 21.11.2024 06:01:11
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. An out-of-bounds read was found in Exiv2 versions v0.27.3 and earlier. Exiv2 is a command-line utility and C++ library for rea...
CVE-2021-29470
- EPSS 0.24%
- Veröffentlicht 23.04.2021 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:01:11
Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 versions v0.27.3 and earlier. The out-of-bounds read is triggered when Exiv2 is used t...
CVE-2021-29458
- EPSS 0.1%
- Veröffentlicht 19.04.2021 19:15:18
- Zuletzt bearbeitet 21.11.2024 06:01:08
Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 versions v0.27.3 and earlier. The out-of-bounds read is triggered when Exiv2 is used t...
CVE-2021-29457
- EPSS 1.51%
- Veröffentlicht 19.04.2021 19:15:17
- Zuletzt bearbeitet 21.11.2024 06:01:08
Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. A heap buffer overflow was found in Exiv2 versions v0.27.3 and earlier. The heap overflow is triggered when Exiv2 is used to wr...
CVE-2021-3482
- EPSS 0.2%
- Veröffentlicht 08.04.2021 23:15:12
- Zuletzt bearbeitet 21.11.2024 06:21:38
A flaw was found in Exiv2 in versions before and including 0.27.4-RC1. Improper input validation of the rawData.size property in Jp2Image::readMetadata() in jp2image.cpp can lead to a heap-based buffer overflow via a crafted JPG image containing mali...
CVE-2019-20421
- EPSS 3.07%
- Veröffentlicht 27.01.2020 05:15:10
- Zuletzt bearbeitet 21.11.2024 04:38:25
In Jp2Image::readMetadata() in jp2image.cpp in Exiv2 0.27.2, an input file can result in an infinite loop and hang, with high CPU consumption. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted file.
CVE-2019-17402
- EPSS 0.26%
- Veröffentlicht 09.10.2019 19:15:14
- Zuletzt bearbeitet 21.11.2024 04:32:16
Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset an...