PT-2017-13733 · Exiv2+1 · Exiv2+1

Liu Zhu

·

Published

2017-09-28

·

Updated

2019-10-03

·

CVE-2017-14863

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Exiv2 version 0.26
Description A NULL pointer dereference was discovered in the Exiv2::Image::printIFDStructure function in image.cpp, which causes a segmentation fault and application crash, leading to denial of service.
Recommendations For Exiv2 version 0.26, consider applying a patch or fix to resolve the NULL pointer dereference issue in the Exiv2::Image::printIFDStructure function to prevent application crashes and denial of service.

Exploit

Fix

DoS

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-2468
ALT-PU-2019-2590
CVE-2017-14863

Affected Products

Alt Linux
Exiv2