-
Notifications
You must be signed in to change notification settings - Fork 286
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
CVE-2017-14865: It is a heap-buffer-overflow in Exiv2::us2Data (types.cpp:346) #134
Comments
The master branch is not vulnerable, the issue has been fixed by: d3c2b99. |
D4N
added a commit
to D4N/exiv2
that referenced
this issue
Oct 20, 2017
Should this be closed then? |
Not until the testsuite has been updated on the 0.26 branch. |
D4N
added a commit
to D4N/exiv2
that referenced
this issue
Oct 29, 2017
D4N
added a commit
that referenced
this issue
Oct 29, 2017
Added reproducer for #134 / CVE-2017-14865
Merged
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
I am forwarding a bugreport from the Redhat bugzilla: 1494778.
PoC file: Created attachment 1329793
The text was updated successfully, but these errors were encountered: