There is a Floating point exception in the Exiv2::ValueType function in Exiv2 0.26 that will lead to a remote denial of service attack via crafted input.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Exiv2 | Exiv2 | 0.26 (including) | 0.26 (including) |
Exiv2 | Ubuntu | artful | * |
Exiv2 | Ubuntu | bionic | * |
Exiv2 | Ubuntu | cosmic | * |
Exiv2 | Ubuntu | devel | * |
Exiv2 | Ubuntu | trusty | * |
Exiv2 | Ubuntu | xenial | * |
Exiv2 | Ubuntu | yakkety | * |
Exiv2 | Ubuntu | zesty | * |