CVE-2019-13112 PUBLISHED

A PngChunk::parseChunkContent uncontrolled memory allocation in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (crash due to an std::bad_alloc exception) via a crafted PNG image file.

EPSS 0.31% · 53.8th percentile

Risk Scores

EPSS Score
0.31%
53.8th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSexiv20, 0.25-1ubuntu1, 0.25-2.1
Ubuntu:18.04:LTSexiv20, 0.25-3.1, 0.25-3.1ubuntu0.18.04.1

Timeline

References

Open in Interactive Console →