Exiv2 kayıtları
exiv2 üreticisine ait 124 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %86,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-125 Out-of-bounds Read40
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer16
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')9
- CWE-190 Integer Overflow or Wraparound8
- CWE-476 NULL Pointer Dereference7
- CWE-787 Out-of-bounds Write6
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
124 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2018-11531İstismar yok | Exiv2 0.26 has a heap-based buffer overflow in getData in preview.cpp.exiv2 · exiv2 · CWE-787 | Kritik9,8 | — | %3,0 | 29 May 2018 |
36İzleyin | CVE-2018-12264İstismar yok | Exiv2 0.26 has integer overflows in LoaderTiff::getData() in preview.cpp, leading to an out-of-bounds read in Exiv2::ValueType::setDataArea exiv2 · exiv2 · CWE-125 | Yüksek8,8 | — | %2,9 | 13 Haz 2018 |
36İzleyin | CVE-2018-12265İstismar yok | Exiv2 0.26 has an integer overflow in the LoaderExifJpeg class in preview.cpp, leading to an out-of-bounds read in Exiv2::MemIo::read in basexiv2 · exiv2 · CWE-125 | Yüksek8,8 | — | %2,9 | 13 Haz 2018 |
36İzleyin | CVE-2019-9144İstismar yok | An issue was discovered in Exiv2 0.27.exiv2 · exiv2 · CWE-674 | Yüksek8,8 | — | %2,8 | 25 Şub 2019 |
36İzleyin | CVE-2019-9143İstismar yok | An issue was discovered in Exiv2 0.27.exiv2 · exiv2 · CWE-674 | Yüksek8,8 | — | %2,8 | 25 Şub 2019 |
36İzleyin | CVE-2018-14046İstismar yok | Exiv2 0.26 has a heap-based buffer over-read in WebPImage::decodeChunks in webpimage.cpp.exiv2 · exiv2 · CWE-125 | Yüksek8,8 | — | %1,7 | 13 Tem 2018 |
36İzleyin | CVE-2017-12955İstismar yok | There is a heap-based buffer overflow in basicio.cpp of Exiv2 0.26.exiv2 · exiv2 · CWE-119 | Yüksek8,8 | — | %1,7 | 18 Ağu 2017 |
35İzleyin | CVE-2023-44398İstismar yok | Out-of-bounds write in exiv2exiv2 · exiv2 · CWE-787 | Yüksek8,8 | — | %1,0 | 6 Kas 2023 |
33İzleyin | CVE-2018-9305İstismar yok | In Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in iptc.c could result in a crash or information leak, related to the "== 0exiv2 · exiv2 · CWE-125 | Yüksek8,1 | — | %1,9 | 4 Nis 2018 |
33İzleyin | CVE-2018-9144İstismar yok | In Exiv2 0.26, there is an out-of-bounds read in Exiv2::Internal::binaryToString in image.cpp.exiv2 · exiv2 · CWE-125 | Yüksek8,1 | — | %1,8 | 30 Mar 2018 |
33İzleyin | CVE-2020-18771İstismar yok | Exiv2 0.27.99.0 has a global buffer over-read in Exiv2::Internal::Nikon1MakerNote::print0x0088 in nikonmn_int.cpp which can result in an infexiv2 · exiv2 · CWE-125 | Yüksek8,1 | — | %1,8 | 23 Ağu 2021 |
33İzleyin | CVE-2017-17723İstismar yok | In Exiv2 0.26, there is a heap-based buffer over-read in the Exiv2::Image::byteSwap4 function in image.cpp.exiv2 · exiv2 · CWE-125 | Yüksek8,1 | — | %1,8 | 12 Şub 2018 |
32İzleyin | CVE-2021-29457İstismar yok | Heap buffer overflow in Exiv2::Jp2Image::doWriteMetadataexiv2 · exiv2 · CWE-122 | Yüksek7,8 | — | %2,2 | 19 Nis 2021 |
32İzleyin | CVE-2018-14338İstismar yok | samples/geotag.cpp in the example code of Exiv2 0.26 misuses the realpath function on POSIX platforms (other than Apple platforms) where gliexiv2 · exiv2 · CWE-119 | Yüksek8,1 | — | %1,4 | 17 Tem 2018 |
31İzleyin | CVE-2007-6353İstismar yok | Integer overflow in exif.cpp in exiv2 library allows context-dependent attackers to execute arbitrary code via a crafted EXIF file that trigexiv2 · exiv2 · CWE-190 | Yüksek7,5 | — | %4,9 | 19 Ara 2007 |
31İzleyin | CVE-2019-20421İstismar yok | In Jp2Image::readMetadata() in jp2image.cpp in Exiv2 0.27.2, an input file can result in an infinite loop and hang, with high CPU consumptioexiv2 · exiv2 · CWE-835 | Yüksek7,5 | — | %4,3 | 27 Oca 2020 |
31İzleyin | CVE-2017-11591İstismar yok | There is a Floating point exception in the Exiv2::ValueType function in Exiv2 0.26 that will lead to a remote denial of service attack via cexiv2 · exiv2 | Yüksek7,5 | — | %3,1 | 23 Tem 2017 |
31İzleyin | CVE-2017-9953İstismar yok | There is an invalid free in Image::printIFDStructure that leads to a Segmentation fault in Exiv2 0.26.exiv2 · exiv2 · CWE-416 | Yüksek7,5 | — | %2,8 | 26 Haz 2017 |
31İzleyin | CVE-2021-31292İstismar yok | An integer overflow in CrwMap::encode0x1810 of Exiv2 0.27.3 allows attackers to trigger a heap-based buffer overflow and cause a denial of sexiv2 · exiv2 · CWE-190 | Yüksek7,5 | — | %2,6 | 26 Tem 2021 |
31İzleyin | CVE-2017-11592İstismar yok | There is a Mismatched Memory Management Routines vulnerability in the Exiv2::FileIo::seek function of Exiv2 0.26 that will lead to a remote exiv2 · exiv2 · CWE-119 | Yüksek7,5 | — | %1,7 | 23 Tem 2017 |
31İzleyin | CVE-2017-11553İstismar yok | There is an illegal address access in the extend_alias_table function in localealias.c of Exiv2 0.26.exiv2 · exiv2 · CWE-20 | Yüksek7,5 | — | %1,7 | 22 Tem 2017 |
31İzleyin | CVE-2021-29464İstismar yok | Heap buffer overflow in Exiv2::Jp2Image::encodeJp2Headerexiv2 · exiv2 · CWE-122 | Yüksek7,8 | — | %1,5 | 30 Nis 2021 |
31İzleyin | CVE-2019-14368İstismar yok | Exiv2 0.27.99.0 has a heap-based buffer over-read in Exiv2::RafImage::readMetadata() in rafimage.cpp.exiv2 · exiv2 · CWE-125 | Yüksek7,8 | — | %1,1 | 28 Tem 2019 |
31İzleyin | CVE-2020-18831İstismar yok | Buffer Overflow vulnerability in tEXtToDataBuf function in pngimage.cpp in Exiv2 0.27.1 allows remote attackers to cause a denial of serviceexiv2 · exiv2 · CWE-787 | Yüksek7,8 | — | %0,8 | 22 Ağu 2023 |
27İzleyin | CVE-2018-20096İstismar yok | There is a heap-based buffer over-read in the Exiv2::tEXtToDataBuf function of pngimage.cpp in Exiv2 0.27-RC3.exiv2 · exiv2 · CWE-125 | Orta6,5 | — | %2,8 | 12 Ara 2018 |
- CVE-2018-1153140Planlayın
Exiv2 0.26 has a heap-based buffer overflow in getData in preview.cpp.
KritikCVSS 9,8İstismar yokEPSS %3exiv2 · exiv229 May 2018
- CVE-2018-1226436İzleyin
Exiv2 0.26 has integer overflows in LoaderTiff::getData() in preview.cpp, leading to an out-of-bounds read in Exiv2::ValueType::setDataArea
YüksekCVSS 8,8İstismar yokEPSS %3exiv2 · exiv213 Haz 2018
- CVE-2018-1226536İzleyin
Exiv2 0.26 has an integer overflow in the LoaderExifJpeg class in preview.cpp, leading to an out-of-bounds read in Exiv2::MemIo::read in bas
YüksekCVSS 8,8İstismar yokEPSS %3exiv2 · exiv213 Haz 2018
- CVE-2019-914436İzleyin
An issue was discovered in Exiv2 0.27.
YüksekCVSS 8,8İstismar yokEPSS %3exiv2 · exiv225 Şub 2019
- CVE-2019-914336İzleyin
An issue was discovered in Exiv2 0.27.
YüksekCVSS 8,8İstismar yokEPSS %3exiv2 · exiv225 Şub 2019
- CVE-2018-1404636İzleyin
Exiv2 0.26 has a heap-based buffer over-read in WebPImage::decodeChunks in webpimage.cpp.
YüksekCVSS 8,8İstismar yokEPSS %2exiv2 · exiv213 Tem 2018
- CVE-2017-1295536İzleyin
There is a heap-based buffer overflow in basicio.cpp of Exiv2 0.26.
YüksekCVSS 8,8İstismar yokEPSS %2exiv2 · exiv218 Ağu 2017
- CVE-2023-4439835İzleyin
Out-of-bounds write in exiv2
YüksekCVSS 8,8İstismar yokEPSS %1exiv2 · exiv26 Kas 2023
- CVE-2018-930533İzleyin
In Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in iptc.c could result in a crash or information leak, related to the "== 0
YüksekCVSS 8,1İstismar yokEPSS %2exiv2 · exiv24 Nis 2018
- CVE-2018-914433İzleyin
In Exiv2 0.26, there is an out-of-bounds read in Exiv2::Internal::binaryToString in image.cpp.
YüksekCVSS 8,1İstismar yokEPSS %2exiv2 · exiv230 Mar 2018
- CVE-2020-1877133İzleyin
Exiv2 0.27.99.0 has a global buffer over-read in Exiv2::Internal::Nikon1MakerNote::print0x0088 in nikonmn_int.cpp which can result in an inf
YüksekCVSS 8,1İstismar yokEPSS %2exiv2 · exiv223 Ağu 2021
- CVE-2017-1772333İzleyin
In Exiv2 0.26, there is a heap-based buffer over-read in the Exiv2::Image::byteSwap4 function in image.cpp.
YüksekCVSS 8,1İstismar yokEPSS %2exiv2 · exiv212 Şub 2018
- CVE-2021-2945732İzleyin
Heap buffer overflow in Exiv2::Jp2Image::doWriteMetadata
YüksekCVSS 7,8İstismar yokEPSS %2exiv2 · exiv219 Nis 2021
- CVE-2018-1433832İzleyin
samples/geotag.cpp in the example code of Exiv2 0.26 misuses the realpath function on POSIX platforms (other than Apple platforms) where gli
YüksekCVSS 8,1İstismar yokEPSS %1exiv2 · exiv217 Tem 2018
- CVE-2007-635331İzleyin
Integer overflow in exif.cpp in exiv2 library allows context-dependent attackers to execute arbitrary code via a crafted EXIF file that trig
YüksekCVSS 7,5İstismar yokEPSS %5exiv2 · exiv219 Ara 2007
- CVE-2019-2042131İzleyin
In Jp2Image::readMetadata() in jp2image.cpp in Exiv2 0.27.2, an input file can result in an infinite loop and hang, with high CPU consumptio
YüksekCVSS 7,5İstismar yokEPSS %4exiv2 · exiv227 Oca 2020
- CVE-2017-1159131İzleyin
There is a Floating point exception in the Exiv2::ValueType function in Exiv2 0.26 that will lead to a remote denial of service attack via c
YüksekCVSS 7,5İstismar yokEPSS %3exiv2 · exiv223 Tem 2017
- CVE-2017-995331İzleyin
There is an invalid free in Image::printIFDStructure that leads to a Segmentation fault in Exiv2 0.26.
YüksekCVSS 7,5İstismar yokEPSS %3exiv2 · exiv226 Haz 2017
- CVE-2021-3129231İzleyin
An integer overflow in CrwMap::encode0x1810 of Exiv2 0.27.3 allows attackers to trigger a heap-based buffer overflow and cause a denial of s
YüksekCVSS 7,5İstismar yokEPSS %3exiv2 · exiv226 Tem 2021
- CVE-2017-1159231İzleyin
There is a Mismatched Memory Management Routines vulnerability in the Exiv2::FileIo::seek function of Exiv2 0.26 that will lead to a remote
YüksekCVSS 7,5İstismar yokEPSS %2exiv2 · exiv223 Tem 2017
- CVE-2017-1155331İzleyin
There is an illegal address access in the extend_alias_table function in localealias.c of Exiv2 0.26.
YüksekCVSS 7,5İstismar yokEPSS %2exiv2 · exiv222 Tem 2017
- CVE-2021-2946431İzleyin
Heap buffer overflow in Exiv2::Jp2Image::encodeJp2Header
YüksekCVSS 7,8İstismar yokEPSS %1exiv2 · exiv230 Nis 2021
- CVE-2019-1436831İzleyin
Exiv2 0.27.99.0 has a heap-based buffer over-read in Exiv2::RafImage::readMetadata() in rafimage.cpp.
YüksekCVSS 7,8İstismar yokEPSS %1exiv2 · exiv228 Tem 2019
- CVE-2020-1883131İzleyin
Buffer Overflow vulnerability in tEXtToDataBuf function in pngimage.cpp in Exiv2 0.27.1 allows remote attackers to cause a denial of service
YüksekCVSS 7,8İstismar yokEPSS %1exiv2 · exiv222 Ağu 2023
- CVE-2018-2009627İzleyin
There is a heap-based buffer over-read in the Exiv2::tEXtToDataBuf function of pngimage.cpp in Exiv2 0.27-RC3.
OrtaCVSS 6,5İstismar yokEPSS %3exiv2 · exiv212 Ara 2018