CVE-2020-18771 log

Source
Severity Medium
Remote Yes
Type Information disclosure
Description
Exiv2 before version 0.27.1 has a global buffer over-read in Exiv2::Internal::Nikon1MakerNote::print0x0088 in nikonmn_int.cpp which can result in an information leak.
Group Package Affected Fixed Severity Status Ticket
AVG-614 exiv2 0.26-2 0.27.1-1 Medium Fixed
References
https://github.com/Exiv2/exiv2/issues/756
https://github.com/Exiv2/exiv2/pull/758
https://github.com/Exiv2/exiv2/commit/5e6c2855ce98bd5fa89e84a51049cd3b90a5c140