Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-17402

Опубликовано: 06 окт. 2019
Источник: redhat
CVSS3: 6.5

Описание

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

An out of bounds read vulnerability was discovered in the way exiv2 parses Canon raw format (CRW) images. An application that uses exiv2 library to parse untrusted images may be vulnerable to this flaw, which could be used by an attacker to extract data from the application's memory or make it crash. The biggest threat with this vulnerability is availability of the system.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6exiv2Out of support scope
Red Hat Enterprise Linux 7compat-exiv2-023Out of support scope
Red Hat Enterprise Linux 7compat-exiv2-026Out of support scope
Red Hat Enterprise Linux 8compat-exiv2-026Fix deferred
Red Hat Enterprise Linux 7exiv2FixedRHSA-2020:403029.09.2020
Red Hat Enterprise Linux 8exiv2FixedRHSA-2021:175818.05.2021

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1773683exiv2: out-of-bounds read in CiffDirectory::readDirectory due to lack of size check

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 6 лет назад

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

CVSS3: 6.5
nvd
около 6 лет назад

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

CVSS3: 6.5
msrc
почти 4 года назад

Описание отсутствует

CVSS3: 6.5
debian
около 6 лет назад

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in ...

rocky
больше 4 лет назад

Low: exiv2 security, bug fix, and enhancement update

6.5 Medium

CVSS3