Red Hat Bugzilla – Bug 1561213
CVE-2018-8976 exiv2: out-of-bounds read in Exiv2::Internal::stringFormat image.cpp
Last modified: 2018-04-30 18:19:02 EDT
A flaw was found in Exiv2 0.26, jpgimage.cpp allows remote attackers to cause a denial of service (image.cpp Exiv2::Internal::stringFormat out-of-bounds read) via a crafted file. References: https://github.com/Exiv2/exiv2/issues/246
Created exiv2 tracking bugs for this issue: Affects: fedora-all [bug 1561214]
This issue does not affect the exiv2 version shipped in Red Hat Enterprise Linux 7.4. However, in Red Hat Enterprise Linux 7.5, exiv2 is rebased to the affected version (0.26).