Back

MEDIUM

exiv2: out-of-bounds read in CiffDirectory::readDirectory due to lack of size check

Published Oct 9, 2019

Description

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

Affected products

Remediation

No remediation recorded yet.

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Oct 9, 2019
Updated Aug 5, 2024
Reserved Oct 9, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Oct 6, 2019
ENISA EUVD
Assigner mitre
Published Oct 9, 2019
Updated Aug 5, 2024
Exploited since n/a
EUVD-2019-0052