Vulnerability index

Browse CVEs

64 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Exiv2 MEDIUM 6.5
CVE-2018-10780

Exiv2::Image::byteSwap2 in image.cpp in Exiv2 0.26 has a heap-based buffer over-read.

No fix yet
Fix from $1,600 2018-05-07
Exiv2 MEDIUM 6.5
CVE-2018-10772

The tEXtToDataBuf function in pngimage.cpp in Exiv2 through 0.26 allows remote attackers to cause a denial of service (application crash) or possibly…

Fix: after 0.26
Fix from $1,600 2018-05-07
Exiv2 HIGH 8.1
CVE-2018-9305

In Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in iptc.c could result in a crash or information leak, related to the "== 0x1c" case.

Fix: 0.26+
Fix from $1,950 2018-04-04
Exiv2 MEDIUM 6.5
CVE-2018-9303

In Exiv2 0.26, an assertion failure in BigTiffImage::readData in bigtiffimage.cpp results in an abort.

Fix: 0.26+
Fix from $1,600 2018-04-04
Exiv2 MEDIUM 6.5
CVE-2018-9304

In Exiv2 0.26, a divide by zero in BigTiffImage::printIFD in bigtiffimage.cpp could result in denial of service.

Fix: 0.26+
Fix from $1,600 2018-04-04
Exiv2 HIGH 8.1
CVE-2018-9144

In Exiv2 0.26, there is an out-of-bounds read in Exiv2::Internal::binaryToString in image.cpp. It could result in denial of service or information di…

Fix: 0.26+
Fix from $1,950 2018-03-30
Exiv2 MEDIUM 6.5
CVE-2018-9145

In the DataBuf class in include/exiv2/types.hpp in Exiv2 0.26, an issue exists in the constructor with an initial buffer size. A large size value may…

No fix yet
Fix from $1,600 2018-03-30
Exiv2 MEDIUM 6.5
CVE-2018-8977

In Exiv2 0.26, the Exiv2::Internal::printCsLensFFFF function in canonmn_int.cpp allows remote attackers to cause a denial of service (invalid memory …

Patch available
Fix from $1,600 2018-03-25
Exiv2 HIGH 8.1
CVE-2017-17723

In Exiv2 0.26, there is a heap-based buffer over-read in the Exiv2::Image::byteSwap4 function in image.cpp. Remote attackers can exploit this vulnera…

No fix yet
Fix from $1,950 2018-02-12
Exiv2 MEDIUM 6.5
CVE-2017-17722

In Exiv2 0.26, there is a reachable assertion in the readHeader function in bigtiffimage.cpp, which will lead to a remote denial of service attack vi…

No fix yet
Fix from $1,600 2018-02-12
Exiv2 MEDIUM 6.5
CVE-2017-17724

In Exiv2 0.26, there is a heap-based buffer over-read in the Exiv2::IptcData::printStructure function in iptc.cpp, related to the "!= 0x1c" case. Rem…

No fix yet
Fix from $1,600 2018-02-12
Exiv2 MEDIUM 6.5
CVE-2017-17725

In Exiv2 0.26, there is an integer overflow leading to a heap-based buffer over-read in the Exiv2::getULong function in types.cpp. Remote attackers c…

No fix yet
Fix from $1,600 2018-02-12
Exiv2 MEDIUM 5.5
CVE-2018-5772

In Exiv2 0.26, there is a segmentation fault caused by uncontrolled recursion in the Exiv2::Image::printIFDStructure function in the image.cpp file. …

No fix yet
Fix from $1,600 2018-01-18
Exiv2 MEDIUM 5.5
CVE-2018-4868

The Exiv2::Jp2Image::readMetadata function in jp2image.cpp in Exiv2 0.26 allows remote attackers to cause a denial of service (excessive memory alloc…

No fix yet
Fix from $1,600 2018-01-03
Exiv2 MEDIUM 5.5
CVE-2017-1000126

exiv2 0.26 contains a Stack out of bounds read in webp parser

Mitigation only
Fix from $1,600 2017-11-17
Exiv2 MEDIUM 5.5
CVE-2017-1000127

Exiv2 0.26 contains a heap buffer overflow in tiff parser

Mitigation only
Fix from $1,600 2017-11-17
Exiv2 MEDIUM 5.5
CVE-2017-1000128

Exiv2 0.26 contains a stack out of bounds read in JPEG2000 parser

Mitigation only
Fix from $1,600 2017-11-17
Exiv2 MEDIUM 5.5
CVE-2017-14866

There is a heap-based buffer overflow in the Exiv2::s2Data function of types.cpp in Exiv2 0.26. A Crafted input will lead to a denial of service atta…

No fix yet
Fix from $1,600 2017-09-29
Exiv2 MEDIUM 5.5
CVE-2017-14857

In Exiv2 0.26, there is an invalid free in the Image class in image.cpp that leads to a Segmentation fault. A crafted input will lead to a denial of …

No fix yet
Fix from $1,600 2017-09-29
Exiv2 MEDIUM 5.5
CVE-2017-14858

There is a heap-based buffer overflow in the Exiv2::l2Data function of types.cpp in Exiv2 0.26. A Crafted input will lead to a denial of service atta…

No fix yet
Fix from $1,600 2017-09-29
Exiv2 MEDIUM 5.5
CVE-2017-14860

There is a heap-based buffer over-read in the Exiv2::Jp2Image::readMetadata function of jp2image.cpp in Exiv2 0.26. A Crafted input will lead to a de…

No fix yet
Fix from $1,600 2017-09-29
Exiv2 MEDIUM 5.5
CVE-2017-14861

There is a stack consumption vulnerability in the Exiv2::Internal::stringFormat function of image.cpp in Exiv2 0.26. A Crafted input will lead to a r…

No fix yet
Fix from $1,600 2017-09-29
Exiv2 MEDIUM 5.5
CVE-2017-14863

A NULL pointer dereference was discovered in Exiv2::Image::printIFDStructure in image.cpp in Exiv2 0.26. The vulnerability causes a segmentation faul…

No fix yet
Fix from $1,600 2017-09-29
Exiv2 MEDIUM 5.5
CVE-2017-14865

There is a heap-based buffer overflow in the Exiv2::us2Data function of types.cpp in Exiv2 0.26. A Crafted input will lead to a denial of service att…

Mitigation only
Fix from $1,600 2017-09-29
Exiv2 HIGH 8.8
CVE-2017-12955

There is a heap-based buffer overflow in basicio.cpp of Exiv2 0.26. The vulnerability causes an out-of-bounds write in Exiv2::Image::printIFDStructur…

Mitigation only
Fix from $1,950 2017-08-18
Exiv2 MEDIUM 6.5
CVE-2017-12956

There is an illegal address access in Exiv2::FileIo::path[abi:cxx11]() in basicio.cpp of libexiv2 in Exiv2 0.26 that will lead to remote denial of se…

Mitigation only
Fix from $1,600 2017-08-18
Exiv2 MEDIUM 6.5
CVE-2017-12957

There is a heap-based buffer over-read in libexiv2 in Exiv2 0.26 that is triggered in the Exiv2::Image::io function in image.cpp. It will lead to rem…

Mitigation only
Fix from $1,600 2017-08-18
Exiv2 HIGH 7.5
CVE-2017-11592

There is a Mismatched Memory Management Routines vulnerability in the Exiv2::FileIo::seek function of Exiv2 0.26 that will lead to a remote denial of…

No fix yet
Fix from $1,950 2017-07-24
Exiv2 HIGH 7.5
CVE-2017-11553

There is an illegal address access in the extend_alias_table function in localealias.c of Exiv2 0.26. A crafted input will lead to remote denial of s…

No fix yet
Fix from $1,950 2017-07-23
Exiv2 MEDIUM 6.5
CVE-2017-11336

There is a heap-based buffer over-read in the Image::printIFDStructure function in image.cpp in Exiv2 0.26. A Crafted input will lead to a remote den…

Mitigation only
Fix from $1,600 2017-07-17