ISOMAN

CVE

CVE-2019-17402

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

Severity
MEDIUM
CVSS
6.5
Published
Modified

Linked Releases

DistributionReleaseStatusEvidence
Ubuntu18.04.6 amd64 desktopunknownsource
Ubuntu18.04.6 amd64 live-serverunknownsource

References

  1. https://github.com/Exiv2/exiv2/issues/1019
  2. https://lists.debian.org/debian-lts-announce/2019/12/msg00001.html
  3. https://lists.debian.org/debian-lts-announce/2023/01/msg00004.html
  4. https://usn.ubuntu.com/4159-1/
  5. https://github.com/Exiv2/exiv2/issues/1019
  6. https://lists.debian.org/debian-lts-announce/2019/12/msg00001.html
  7. https://lists.debian.org/debian-lts-announce/2023/01/msg00004.html
  8. https://usn.ubuntu.com/4159-1/