Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30364
HistoryMay 06, 2021 - 11:15 a.m.

Out-of-bounds Read

2021-05-0611:15:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

EPSS

0.001

Percentile

44.7%

Exiv2 is vulnerable to out-of-bounds read. The out-of-bounds read is triggered when Exiv2 is used to write metadata into a crafted image file. An attacker could potentially exploit the vulnerability to cause a denial of service by crashing Exiv2, if they can trick the victim into running Exiv2 on a crafted image file.