CVE-2017-12955 PUBLISHED CVSS 8.800000190734863 HIGH

There is a heap-based buffer overflow in basicio.cpp of Exiv2 0.26. The vulnerability causes an out-of-bounds write in Exiv2::Image::printIFDStructure(), which may lead to remote denial of service or possibly unspecified other impact.

EPSS 1.12% · 78.1th percentile

Risk Scores

CVSS v3.0
8.800000190734863
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
1.12%
78.1th percentile

Affected Products

VendorProductVersions
exiv2exiv20.26
n/an/an/a

Timeline

References

Open in Interactive Console →