Search CVE reports


Toggle filters

31 – 40 of 128 results


CVE-2021-29464

Low priority
Fixed

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. A heap buffer overflow was found in Exiv2 versions v0.27.3 and earlier. The heap overflow is triggered when...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Fixed Fixed Not affected
Show less packages

CVE-2021-29463

Low priority
Fixed

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 versions v0.27.3 and earlier. The out-of-bounds read is triggered...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Fixed Fixed Not affected
Show less packages

CVE-2021-29458

Medium priority
Fixed

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 versions v0.27.3 and earlier. The out-of-bounds read is triggered...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Fixed Fixed Fixed
Show less packages

CVE-2021-29457

Medium priority
Fixed

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. A heap buffer overflow was found in Exiv2 versions v0.27.3 and earlier. The heap overflow is triggered when...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Fixed Fixed Fixed
Show less packages

CVE-2020-19716

Medium priority
Ignored

A buffer overflow vulnerability in the Databuf function in types.cpp of Exiv2 v0.27.1 leads to a denial of service (DOS).

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected
Show less packages

CVE-2020-19715

Medium priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-13110 Reason: This candidate is a duplicate of CVE-2019-13110. Notes: All CVE users should reference CVE-2019-13110 instead of this candidate. All references...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected
Show less packages

CVE-2020-18899

Low priority
Needs evaluation

An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) function of Exiv2 0.27 allows attackers to cause a denial of service (DOS) via a crafted input.

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected Needs evaluation
Show less packages

CVE-2020-18898

Negligible priority
Ignored

A stack exhaustion issue in the printIFDStructure function of Exiv2 0.27 allows remote attackers to cause a denial of service (DOS) via a crafted file.

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected
Show less packages

CVE-2020-18831

Medium priority
Needs evaluation

Buffer Overflow vulnerability in tEXtToDataBuf function in pngimage.cpp in Exiv2 0.27.1 allows remote attackers to cause a denial of service and other unspecified impacts via use of crafted file.

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected Needs evaluation
Show less packages

CVE-2020-18774

Low priority
Vulnerable

A float point exception in the printLong function in tags_int.cpp of Exiv2 0.27.99.0 allows attackers to cause a denial of service (DOS) via a crafted tif file.

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages