Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6272
HistoryMay 10, 2018 - 8:36 a.m.

Denial Of Service (DoS)

2018-05-1008:36:29
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

EPSS

0.002

Percentile

65.0%

libexiv2.so is vulnerable to denial of service (DoS) attacks. Passing a large size value to the application causes a SIGABRT signal during the Exiv2::Internal::PngChunk::zlibUncompress function call through types.cpp, leading to the application crashing.