CVE-2017-11592 PUBLISHED CVSS 7.5 HIGH

There is a Mismatched Memory Management Routines vulnerability in the Exiv2::FileIo::seek function of Exiv2 0.26 that will lead to a remote denial of service attack (heap memory corruption) via crafted input.

EPSS 1.06% · 77.6th percentile

Risk Scores

CVSS v3.0
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
1.06%
77.6th percentile

Affected Products

VendorProductVersions
exiv2exiv20.26
n/an/an/a

Timeline

References

Open in Interactive Console →