Exiv2 has an out-of-bounds read in QuickTimeVideo::NikonTagsDecoder
Description
Published by the National Vulnerability Database
Feb 12, 2024
Published to the GitHub Advisory Database
Oct 17, 2024
Reviewed
Oct 17, 2024
Last updated
Oct 23, 2024
Impact
An out-of-bounds read was found in Exiv2 version v0.28.1. The vulnerable function,
QuickTimeVideo::NikonTagsDecoder
, was new in v0.28.0 (see Exiv2/exiv2#2337), so Exiv2 versions before v0.28 are not affected. Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. The out-of-bounds read is triggered when Exiv2 is used to read the metadata of a crafted video file.Patches
The bug is fixed in version v0.28.2.
For more information
Please see our security policy for information about Exiv2 security.
Credit
This bug was found by OSS-Fuzz.
References