Red Hat Bugzilla – Bug 1594627
CVE-2018-10772 exiv2: OOB read in pngimage.cpp:tEXtToDataBuf() allows for crash via crafted file
Last modified: 2018-07-18 01:36:13 EDT
Exiv2 through version 0.26 is vulnerable to a segmentation fault in the pngimage.cpp:tEXtToDataBuf() function. An attacker could exploit this to cause a denial of service or via crafted file. Product Bug: https://bugzilla.redhat.com/show_bug.cgi?id=1566260
Created exiv2 tracking bugs for this issue: Affects: fedora-all [bug 1594628]