CVE-2019-14982: Buffer Overflow
Published Aug 12, 2019
·Updated
In Exiv2 before v0.27.2, there is an integer overflow vulnerability in the WebPImage::getHeaderOffset function in webpimage.cpp. It can lead to a buffer overflow vulnerability and a crash.
Affected Software
1 affected component
exiv2 exiv2<0.27.2
Remediation
Patch Available
Patch Available
Event History
Aug 12, 2019
CVE Published
via MITRE·10:07 PM
Data Sourced
via MITRE·10:07 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-14982?
CVE-2019-14982 has been classified as a medium severity vulnerability due to the potential for a buffer overflow.
2
How do I fix CVE-2019-14982?
To fix CVE-2019-14982, update Exiv2 to version 0.27.2 or later.
3
What causes the vulnerability in CVE-2019-14982?
CVE-2019-14982 is caused by an integer overflow in the WebPImage::getHeaderOffset function.
4
What are the potential impacts of CVE-2019-14982?
The potential impacts of CVE-2019-14982 include application crashes and possible exploitation leading to arbitrary code execution.
5
Which versions of Exiv2 are affected by CVE-2019-14982?
All versions of Exiv2 prior to version 0.27.2 are affected by CVE-2019-14982.