CVE-2018-4868: Medium severity centos dos2unix vulnerability
Published Jan 3, 2018
·Updated
The Exiv2::Jp2Image::readMetadata function in jp2image.cpp in Exiv2 0.26 allows remote attackers to cause a denial of service (excessive memory allocation) via a crafted file.
Affected Software
2 affected componentsFixes available
redhat/exiv<0.27
0.27
exiv2 exiv2=0.26
Event History
Jan 3, 2018
CVE Published
via MITRE·09:00 AM
Data Sourced
via MITRE·09:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-4868?
CVE-2018-4868 has been classified as a denial of service vulnerability due to excessive memory allocation.
2
How do I fix CVE-2018-4868?
To fix CVE-2018-4868, upgrade Exiv2 to version 0.27 or later.
3
What software is affected by CVE-2018-4868?
CVE-2018-4868 affects Exiv2 version 0.26.
4
Can CVE-2018-4868 be exploited remotely?
Yes, CVE-2018-4868 can be exploited by remote attackers through a crafted file.
5
What is the impact of CVE-2018-4868?
The impact of CVE-2018-4868 is the potential for denial of service, leading to excessive memory consumption.