#VU17927 Infinite loop in Exiv2 - CVE-2019-9144
Published: March 7, 2019 / Updated: October 27, 2022
Exiv2
GNU
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to infinite loop in BigTiffImage::printIFD() function in the file bigtiffimage.cpp. A remote attacker can consume all available system resources via a specially crafted image and cause denial of service conditions.