First published: Mon Aug 23 2021(Updated: )
Exiv2 0.27.99.0 has a global buffer over-read in Exiv2::Internal::Nikon1MakerNote::print0x0088 in nikonmn_int.cpp which can result in an information leak.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CentOS Dos2unix | =0.27.99.0 | |
Debian | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-18771 has a severity rating that indicates it can lead to an information leak through a global buffer over-read.
To fix CVE-2020-18771, upgrade Exiv2 to the latest version that addresses this vulnerability.
CVE-2020-18771 specifically affects Exiv2 version 0.27.99.0.
Yes, CVE-2020-18771 can affect Debian 10.0 due to the inclusion of the vulnerable Exiv2 version.
CVE-2020-18771 is classified as a global buffer over-read vulnerability.