ISOMAN

CVE

CVE-2018-17581

CiffDirectory::readDirectory() at crwimage_int.cpp in Exiv2 0.26 has excessive stack consumption due to a recursive function, leading to Denial of service.

Severity
MEDIUM
CVSS
6.5
Published
Modified

Linked Releases

References

  1. https://access.redhat.com/errata/RHSA-2019:2101
  2. https://github.com/Exiv2/exiv2/issues/460
  3. https://github.com/SegfaultMasters/covering360/blob/master/Exiv2
  4. https://lists.debian.org/debian-lts-announce/2019/02/msg00038.html
  5. https://lists.debian.org/debian-lts-announce/2023/01/msg00004.html
  6. https://usn.ubuntu.com/3852-1/
  7. https://access.redhat.com/errata/RHSA-2019:2101
  8. https://github.com/Exiv2/exiv2/issues/460
  9. https://github.com/SegfaultMasters/covering360/blob/master/Exiv2
  10. https://lists.debian.org/debian-lts-announce/2019/02/msg00038.html
  11. https://lists.debian.org/debian-lts-announce/2023/01/msg00004.html
  12. https://usn.ubuntu.com/3852-1/