Out-of-bounds read in Exiv2 - CVE-2026-68547
Published: August 31, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to an out-of-bounds read in RemoteIo::Impl::populateBlocks in the RemoteIo class when reading a block-aligned remote CRW file from a URL. A remote attacker can supply a specially crafted remote CRW file to disclose sensitive information.
The issue is triggered only when Exiv2 is run on a URL rather than a local file.