Red Hat Bugzilla – Bug 1601628
CVE-2018-14046 exiv2: heap-based buffer over-read in WebPImage::decodeChunks in webpimage.cpp
Last modified: 2018-07-18 03:37:14 EDT
A flaw was found in Exiv2 0.26. A heap-based buffer over-read in WebPImage::decodeChunks in webpimage.cpp. References: https://github.com/Exiv2/exiv2/issues/378 Upstream patch: https://github.com/Exiv2/exiv2/commit/505e2417e408abaf8f9fe9e5076f567a65cc59c3
Created exiv2 tracking bugs for this issue: Affects: fedora-all [bug 1601629]