CVE-2019-14982

Severity CVSS v4.0:
Pending analysis
Type:
CWE-190 Integer Overflow or Wraparound
Publication date:
12/08/2019
Last modified:
16/08/2019

Description

In Exiv2 before v0.27.2, there is an integer overflow vulnerability in the WebPImage::getHeaderOffset function in webpimage.cpp. It can lead to a buffer overflow vulnerability and a crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:exiv2:exiv2:*:*:*:*:*:*:*:* 0.27.2 (excluding)