Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-13504

Опубликовано: 11 июл. 2019
Источник: debian
EPSS Низкий

Описание

There is an out-of-bounds read in Exiv2::MrwImage::readMetadata in mrwimage.cpp in Exiv2 through 0.27.2.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
exiv2fixed0.27.2-6package
exiv2ignoredstretchpackage

Примечания

  • https://github.com/Exiv2/exiv2/pull/943 (fuzzer infrastructure)

  • https://github.com/Exiv2/exiv2/pull/944

  • https://github.com/Exiv2/exiv2/commit/bd0afe0390439b2c424d881c8c6eb0c5624e31d9

  • https://github.com/Exiv2/exiv2/pull/946 (complementary fix)

  • https://github.com/Exiv2/exiv2/commit/54f0bebca032d0286a0e48f47e67dfc6141fedff

EPSS

Процентиль: 43%
0.00205
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 6 лет назад

There is an out-of-bounds read in Exiv2::MrwImage::readMetadata in mrwimage.cpp in Exiv2 through 0.27.2.

CVSS3: 6.5
redhat
около 6 лет назад

There is an out-of-bounds read in Exiv2::MrwImage::readMetadata in mrwimage.cpp in Exiv2 through 0.27.2.

CVSS3: 6.5
nvd
около 6 лет назад

There is an out-of-bounds read in Exiv2::MrwImage::readMetadata in mrwimage.cpp in Exiv2 through 0.27.2.

CVSS3: 6.5
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 6.5
github
больше 3 лет назад

There is an out-of-bounds read in Exiv2::MrwImage::readMetadata in mrwimage.cpp in Exiv2 through 0.27.2.

EPSS

Процентиль: 43%
0.00205
Низкий