Exploit Exiv2 - Corrupted EXIF Data Denial of Service

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
27140
Проверка EDB
  1. Пройдено
Автор
MACIEK WIERCISKI
Тип уязвимости
DOS
Платформа
MULTIPLE
CVE
cve-2005-4676
Дата публикации
2006-01-26
Код:
source: https://www.securityfocus.com/bid/16400/info

Exiv2 is susceptible to a denial-of-service vulnerability. This issue is due to the application's failure to properly bounds-check user-supplied input data before attempting to read it, resulting in an out-of-bounds memory access crash.

This issue allows attackers to crash applications that use the affected library to process malicious image data. Depending on the nature of applications, this may be local or remote in nature.

This issue is present in Exiv2 versions prior to 0.9.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/27140.jpg
 
Источник
www.exploit-db.com