Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7398
HistorySep 03, 2018 - 4:50 a.m.

Denial Of Service

2018-09-0304:50:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.003 Low

EPSS

Percentile

71.2%

libexiv2.so is vulnerable to denial of service. The Exiv2::Internal::PngChunk::parseTXTChunk function allows remote attackers to cause a denial of service condition through a heap-based buffer over-read using a crafted image file. This CVE ID is different from CVE-2018-10999.

CPENameOperatorVersion
libexiv2.soeq12.0.0