Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

Debian 8: DLA-1855-1 Critical: Exiv2 Integer Overflow Denial of Service

debian lts
Calendar Grey July 19, 2019
Dist Debian Esm H88
Enhance exiv2 software to address integer overflow flaw within Debian 8. Safeguard your infrastructure against possible denial of service risks.
It was discovered that there was an integer overflow vulnerability in exiv2, a tool to manipulate images containing (eg.) EXIF metadata

Summary

For Debian 8 "Jessie", this issue has been fixed in exiv2 version
0.24-4.1+deb8u4.

We recommend that you upgrade your exiv2 packages.


Regards,

- --
,'`.
: :' : Chris Lamb
`. `'` lamby@debian.org / chris-lamb.co.uk
`-



Severity
critical
Lowest
Low
Medium
High
Critical

Package: exiv2
Version: 0.24-4.1+deb8u4
CVE ID: CVE-2019-13504

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here