Описание
An issue was discovered in Exiv2 0.26. The Exiv2::Internal::PngChunk::parseTXTChunk function has a heap-based buffer over-read.
An issue was discovered in Exiv2 0.26. The Exiv2::Internal::PngChunk::parseTXTChunk function has a heap-based buffer over-read.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2018-10999
- https://github.com/Exiv2/exiv2/issues/306
- https://lists.debian.org/debian-lts-announce/2018/06/msg00010.html
- https://lists.debian.org/debian-lts-announce/2018/10/msg00012.html
- https://security.gentoo.org/glsa/201811-14
- https://usn.ubuntu.com/3700-1
- https://www.debian.org/security/2018/dsa-4238
Связанные уязвимости
An issue was discovered in Exiv2 0.26. The Exiv2::Internal::PngChunk::parseTXTChunk function has a heap-based buffer over-read.
An issue was discovered in Exiv2 0.26. The Exiv2::Internal::PngChunk::parseTXTChunk function has a heap-based buffer over-read.
An issue was discovered in Exiv2 0.26. The Exiv2::Internal::PngChunk::parseTXTChunk function has a heap-based buffer over-read.
An issue was discovered in Exiv2 0.26. The Exiv2::Internal::PngChunk:: ...
Уязвимость функции Exiv2::Internal::PngChunk::parseTXTChunk библиотеки для управления метаданными медиафайлов Exiv2, позволяющая нарушителю вызвать отказ в обслуживании