#VU38182 NULL pointer dereference in Exiv2 - CVE-2017-14863
Published: September 29, 2017 / Updated: October 21, 2021
Exiv2
GNU
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error in Exiv2::Image::printIFDStructure in image.cpp in Exiv2 0.26. The vulnerability causes a segmentation fault and application crash, which leads to denial of service. A remote attacker can perform a denial of service (DoS) attack.