Heap-based Buffer Overflow in Exiv2 by Exiv2 Inc.
CVE-2017-12955
8.8HIGH
What is CVE-2017-12955?
A heap-based buffer overflow has been identified in the basicio.cpp file of Exiv2 version 0.26. This vulnerability can lead to an out-of-bounds write in the Exiv2::Image::printIFDStructure() function, causing potential disruptions such as remote denial of service. Attackers can exploit this flaw to manipulate the processing of image data, which may result in unexpected behavior or application crashes.