CVE-2020-19716: Buffer Overflow
Published Jul 13, 2021
·Updated
A buffer overflow vulnerability in the Databuf function in types.cpp of Exiv2 v0.27.1 leads to a denial of service (DOS).
Affected Software
2 affected components
exiv2 exiv2=0.27.1
Debian Debian Linux=10.0
Event History
Jul 13, 2021
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2020-19716.
2
What is the severity of CVE-2020-19716?
The severity of CVE-2020-19716 is rated as medium with a CVSS score of 6.5.
3
Which software versions are affected by CVE-2020-19716?
CVE-2020-19716 affects Exiv2 version 0.27.1 and Debian Linux version 10.0.
4
How can CVE-2020-19716 be exploited?
CVE-2020-19716 can be exploited by triggering a buffer overflow in the Databuf function in types.cpp of Exiv2 v0.27.1, leading to a denial of service (DOS).
5
Where can I find more information about CVE-2020-19716?
You can find more information about CVE-2020-19716 on the Exiv2 GitHub page and the Debian LTS announce mailing list.