CVE-2019-13110 PUBLISHED

A CiffDirectory::readDirectory integer overflow and out-of-bounds read in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (SIGSEGV) via a crafted CRW image file.

EPSS 1.32% · 79.8th percentile

Risk Scores

EPSS Score
1.32%
79.8th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSexiv20, 0.25-3.1, 0.25-3.1ubuntu0.18.04.1
Ubuntu:16.04:LTSexiv20.25-2.1ubuntu16.04.2, 0, 0.25-2.1ubuntu16.04.3

Timeline

References

Open in Interactive Console →