Search CVE reports


Toggle filters

1 – 10 of 130 results


CVE-2025-55304

Medium priority
Needs evaluation

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. A denial-of-service was found in Exiv2 version 0.28.5: a quadratic algorithm in the ICC profile parsing...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-54080

Medium priority
Needs evaluation

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. An out-of-bounds read was found in Exiv2 versions 0.28.5 and earlier. The out-of-bounds read is triggered...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-26623

Medium priority
Fixed

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. A heap buffer overflow was found in Exiv2 versions v0.28.0 to v0.28.4. Versions prior to v0.28.0, such as...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-39695

Medium priority
Not affected

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 version v0.28.2. The vulnerability is in the parser for the ASF...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-25112

Medium priority
Not affected

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. A denial-of-service was found in Exiv2 version v0.28.1: an unbounded recursion can cause Exiv2 to crash by...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-24826

Medium priority
Not affected

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 version v0.28.1. The vulnerable...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected Not affected
Show less packages

CVE-2023-44398

Medium priority
Not affected

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. An out-of-bounds write was found in Exiv2 version v0.28.0. The vulnerable...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected
Show less packages

CVE-2020-18831

Medium priority
Needs evaluation

Buffer Overflow vulnerability in tEXtToDataBuf function in pngimage.cpp in Exiv2 0.27.1 allows remote attackers to cause a denial of service and other unspecified impacts via use of crafted file.

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected Needs evaluation
Show less packages

CVE-2022-3953

Medium priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected
Show less packages

CVE-2022-3757

Medium priority
Not affected

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected
Show less packages