CVE-2019-13108 PUBLISHED

Reported by mitre · Published June 30, 2019

An integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (SIGSEGV) via a crafted PNG image file, because PngImage::readMetadata mishandles a zero value for iccOffset.

Affected Products

VendorProductVersions
n/an/an/a
n/an/an/a

Timeline

References

Open in Interactive Console →