#VU17928 Infinite loop in Exiv2 - CVE-2019-9143
Published: March 7, 2019 / Updated: October 27, 2022
Exiv2
GNU
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to infinite loop in Exiv2::Image::printTiffStructure() function in the file image.cpp. A remote attacker can consume all available system resources via a specially crafted image and cause denial of service conditions.