Errata overview
Errata ID 533
Date 2018-10-24
Source package exiv2
Fixed in version 0.24-4.1+deb8u2
Description
This update addresses the following issues:
* SIGABRT caused by memory allocation in
  types.cpp:Exiv2::Internal::PngChunk::zlibUncompress() (CVE-2018-10958)
* heap-based buffer over-read in parseTXTChunk function (CVE-2018-10999)
* heap-based buffer over-read via a crafted image file (CVE-2018-16336)
Additional notes
CVE ID CVE-2018-10958
CVE-2018-10999
CVE-2018-16336
UCS Bug number #48034