CVE-2018-19535: Medium severity exiv2 vulnerability
An issue was found in Exiv2 0.26 and previous versions. A heap-based buffer over-read in PngChunk::readRawProfile function in pngchunkint.cpp may cause a denial of service via a crafted PNG file.
References: https://github.com/Exiv2/exiv2/issues/428 https://github.com/Exiv2/exiv2/pull/430
Other sources
In Exiv2 0.26 and previous versions, PngChunk::readRawProfile in pngchunkint.cpp may cause a denial of service (application crash due to a heap-based buffer over-read) via a crafted PNG file.
— Launchpad
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2018-19535?
CVE-2018-19535 has been identified as a potential denial of service vulnerability that can be triggered by a specially crafted PNG file.
How do I fix CVE-2018-19535?
To mitigate CVE-2018-19535, upgrade Exiv2 to version 0.27.3 or later.
Which versions of Exiv2 are affected by CVE-2018-19535?
Exiv2 versions up to and including 0.26 are affected by CVE-2018-19535.
What platforms are impacted by CVE-2018-19535?
CVE-2018-19535 affects Exiv2 running on Debian, Ubuntu, and Red Hat Enterprise Linux platforms.
Can I exploit CVE-2018-19535 to execute arbitrary code?
CVE-2018-19535 does not allow for remote code execution but can lead to a denial of service condition.