Lucene search

K
cvelistMitreCVELIST:CVE-2018-19566
HistoryOct 03, 2022 - 4:21 p.m.

CVE-2018-19566

2022-10-0316:21:56
mitre
www.cve.org
5
heap buffer over-read
parse_tiff_ifd
malicious files
dcraw code
private information

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

29.4%

A heap buffer over-read in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an application that bundles the dcraw code or leak private information.

AI Score

7.3

Confidence

High

EPSS

0.001

Percentile

29.4%