Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2017-18005

Published: 31 December 2017

Exiv2 0.26 has a Null Pointer Dereference in the Exiv2::DataValue::toLong function in value.cpp, related to crafted metadata in a TIFF file.

Notes

AuthorNote
mdeslaur
can't reproduce with 0.25, upstream but says post 0.26 master

Priority

Low

Cvss 3 Severity Score

5.5

Score breakdown

Status

Package Release Status
exiv2
Launchpad, Ubuntu, Debian
artful Ignored
(end of life)
bionic Not vulnerable
(0.25-3.1ubuntu0.18.04.2)
cosmic Not vulnerable
(0.25-4ubuntu0.1)
trusty Does not exist
(trusty was not-affected [0.23-1ubuntu2.2])
upstream Needs triage

xenial Not vulnerable
(0.25-2.1ubuntu16.04.3)
zesty Ignored
(end of life)
Patches:
upstream: https://github.com/Exiv2/exiv2/pull/199
upstream: https://github.com/Exiv2/exiv2/commit/a07f0278a6e62c14619af784518fbe2eed99c1b0
upstream: https://github.com/Exiv2/exiv2/commit/0c9dcbd7323fd347e872a185523957123da80a05
upstream: https://github.com/Exiv2/exiv2/commit/06bd9c4dbd866e3e56c8a021a18a156002414c9b
upstream: https://github.com/Exiv2/exiv2/commit/235e56cf6b47a508e3f13810e91f296be6466199
upstream: https://github.com/Exiv2/exiv2/commit/182a12a136a7422b2a40ab6c333e1cedd4d566d1

Severity score breakdown

Parameter Value
Base score 5.5
Attack vector Local
Attack complexity Low
Privileges required None
User interaction Required
Scope Unchanged
Confidentiality None
Integrity impact None
Availability impact High
Vector CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H