CVE-2017-17724 log
| Source |
|
| Severity | Low |
| Remote | No |
| Type | Denial of service |
| Description | In Exiv2 0.26, there is a heap-based buffer over-read in the Exiv2::IptcData::printStructure function in iptc.cpp. Remote attackers can exploit this vulnerability to cause a denial of service via a crafted TIFF file. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-614 | exiv2 | 0.26-2 | 0.27.1-1 | Medium | Fixed |
| References |
|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1524107 https://github.com/Exiv2/exiv2/issues/210 |