Use-after-free in Exiv2 - CVE-2025-26623

 

Use-after-free in Exiv2 - CVE-2025-26623

Published: February 18, 2025


Vulnerability identifier: #VU104047
CSH Severity: High
CVSS v4: 8.4 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2025-26623
CWE-ID: CWE-416
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to compromise vulnerable system.

The vulnerability exists due to a use-after-free error when handling files. A remote attacker can pass a specially crafted file to the application, trigger a heap overflow and execute arbitrary code on the system.

Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.


Affected software

Exiv2
Anolis OS
openEuler
Fedora
exiv2
exiv2-devel
exiv2-libs
exiv2-doc
exiv2-debuginfo
exiv2-debugsource
exiv2-help

How to mitigate CVE-2025-26623

Install updates from vendor's website.

Exiv2 - update to 0.28.5
exiv2 - update to 0.28.2-2
exiv2-devel - update to 0.28.2-2
exiv2-libs - update to 0.28.2-2
exiv2-doc - update to 0.28.2-2
exiv2 - update to 0.28.2-3
exiv2-debuginfo - update to 0.28.2-3
exiv2-debugsource - update to 0.28.2-3
exiv2-devel - update to 0.28.2-3
exiv2-help - update to 0.28.2-3
exiv2 - update to 0.28.5-1.fc43

External References

Related Security Bulletins