REDHAT-BUG-1656195: Null Pointer Dereference
Published Dec 4, 2018
·Updated
An issue was found in Exiv2 v0.27-RC2. A NULL pointer dereference in Exiv2::isoSpeed in easyaccess.cpp allows remote attackers to cause a denial of service via a crafted file.
References: https://github.com/Exiv2/exiv2/issues/561
Affected Software
1 affected component
exiv2 exiv2
Event History
Dec 4, 2018
Data Sourced
via Red Hat·10:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1656195?
The severity of REDHAT-BUG-1656195 is classified as a denial of service vulnerability.
2
How do I fix REDHAT-BUG-1656195?
To fix REDHAT-BUG-1656195, update to a patched version of Exiv2 that addresses the NULL pointer dereference issue.
3
What software is affected by REDHAT-BUG-1656195?
REDHAT-BUG-1656195 affects Exiv2 version 0.27-RC2.
4
Can REDHAT-BUG-1656195 be exploited remotely?
Yes, REDHAT-BUG-1656195 can be exploited remotely through crafted files.
5
What type of vulnerability is REDHAT-BUG-1656195?
REDHAT-BUG-1656195 is a NULL pointer dereference vulnerability.