CVE-2020-18771: High severity exiv2 vulnerability
Published Aug 23, 2021
·Updated
Exiv2 0.27.99.0 has a global buffer over-read in Exiv2::Internal::Nikon1MakerNote::print0x0088 in nikonmnint.cpp which can result in an information leak.
Affected Software
2 affected components
exiv2 exiv2=0.27.99.0
Debian Debian Linux=10.0
Event History
Aug 23, 2021
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-18771?
CVE-2020-18771 has a severity rating that indicates it can lead to an information leak through a global buffer over-read.
2
How do I fix CVE-2020-18771?
To fix CVE-2020-18771, upgrade Exiv2 to the latest version that addresses this vulnerability.
3
Which versions of Exiv2 are affected by CVE-2020-18771?
CVE-2020-18771 specifically affects Exiv2 version 0.27.99.0.
4
Is CVE-2020-18771 present in Debian 10.0?
Yes, CVE-2020-18771 can affect Debian 10.0 due to the inclusion of the vulnerable Exiv2 version.
5
What type of vulnerability is CVE-2020-18771?
CVE-2020-18771 is classified as a global buffer over-read vulnerability.