Errata ID | 533 |
---|---|
Date | 2018-10-24 |
Source package | exiv2 |
Fixed in version | 0.24-4.1+deb8u2 |
Description | This update addresses the following issues: * SIGABRT caused by memory allocation in types.cpp:Exiv2::Internal::PngChunk::zlibUncompress() (CVE-2018-10958) * heap-based buffer over-read in parseTXTChunk function (CVE-2018-10999) * heap-based buffer over-read via a crafted image file (CVE-2018-16336) |
Additional notes | |
CVE ID | CVE-2018-10958 CVE-2018-10999 CVE-2018-16336 |
UCS Bug number | #48034 |