Описание
In Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in iptc.c could result in a crash or information leak, related to the "== 0x1c" case.
Ссылки
- ExploitIssue TrackingPatch
- ExploitThird Party Advisory
- Third Party Advisory
- ExploitIssue TrackingPatch
- ExploitThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.26 (исключая)
cpe:2.3:a:exiv2:exiv2:*:*:*:*:*:*:*:*
EPSS
Процентиль: 64%
0.00477
Низкий
8.1 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-125
Связанные уязвимости
CVSS3: 8.1
ubuntu
больше 7 лет назад
In Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in iptc.c could result in a crash or information leak, related to the "== 0x1c" case.
CVSS3: 4.4
redhat
больше 7 лет назад
In Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in iptc.c could result in a crash or information leak, related to the "== 0x1c" case.
CVSS3: 8.1
debian
больше 7 лет назад
In Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in ip ...
CVSS3: 8.1
github
около 3 лет назад
In Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in iptc.c could result in a crash or information leak, related to the "== 0x1c" case.
EPSS
Процентиль: 64%
0.00477
Низкий
8.1 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-125