First published: Fri Nov 17 2017(Updated: )
exiv2 0.26 contains a Stack out of bounds read in webp parser
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CentOS Dos2unix | =0.26 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-1000126 is classified as a moderate severity vulnerability due to its potential for a stack out of bounds read.
To fix CVE-2017-1000126, upgrade to a later version of Exiv2 that addresses this vulnerability.
CVE-2017-1000126 could allow an attacker to exploit the stack memory, possibly leading to information disclosure.
CVE-2017-1000126 affects Exiv2 version 0.26.
CVE-2017-1000126 requires specific conditions to be met for exploitation, which may limit its remote exploitability.