Red Hat Bugzilla – Bug 1635045
CVE-2018-17581 exiv2: heap-based buffer overflow in Exiv2::ul2Data in types.cpp
Last modified: 2018-10-01 17:38:27 EDT
A flaw was found in Exiv2 0.26. The CiffDirectory::readDirectory() function at crwimage_int.cpp has an excessive stack consumption due to a recursive function, leading to Denial of service. References: https://github.com/Exiv2/exiv2/issues/460 https://github.com/SegfaultMasters/covering360/blob/master/Exiv2
Created exiv2 tracking bugs for this issue: Affects: fedora-all [bug 1635046]