CVE-2018-20099
12.12.2018, 10:29
There is an infinite loop in Exiv2::Jp2Image::encodeJp2Header of jp2image.cpp in Exiv2 0.27-RC3. A crafted input will lead to a remote denial of service attack.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| exiv2 | exiv2 | 0.27:rc3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libexiv2-26 |
| ||||||||||||||||||||||||
| libexiv2-devel |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||
|---|---|---|---|---|---|
| exiv2 |
| ||||
| exiv2-devel |
| ||||
| exiv2-doc |
| ||||
| exiv2-libs |
| ||||
| gegl |
| ||||
| gnome-color-manager |
| ||||
| libgexiv2 |
| ||||
| libgexiv2-devel |
|
Common Weakness Enumeration
References