CVE-2018-17230

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
19/09/2018
Last modified:
24/08/2020

Description

Exiv2::ul2Data in types.cpp in Exiv2 v0.26 allows remote attackers to cause a denial of service (heap-based buffer overflow) via a crafted image file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:exiv2:exiv2:0.26:*:*:*:*:*:*:*