CVE-2019-14982

In Exiv2 before v0.27.2, there is an integer overflow vulnerability in the WebPImage::getHeaderOffset function in webpimage.cpp. It can lead to a buffer overflow vulnerability and a crash.

packagechannelchannel versionpkg versionstatus
exiv2
nixos-18.03
2019-02-20 10:25:14 UTC (cb0e20)0.26vulnerable
2019-01-16 18:00:31 UTC (138f2c)0.26vulnerable
2018-12-09 06:05:37 UTC (b551f8)0.26vulnerable
2018-11-29 21:00:31 UTC (a18112)0.26vulnerable
2018-11-28 06:10:25 UTC (9c96d1)0.26vulnerable
2018-11-23 12:45:42 UTC (e64482)0.26vulnerable
2018-11-20 12:35:27 UTC (947247)0.26vulnerable
2018-11-16 21:00:27 UTC (263f7b)0.26vulnerable
2018-11-14 10:35:19 UTC (1d8470)0.26vulnerable
2018-11-05 13:10:34 UTC (21b7f5)0.26vulnerable
2018-11-02 08:50:28 UTC (0e614d)0.26vulnerable
2018-10-30 16:25:07 UTC (19fc6d)0.26vulnerable
2018-10-30 14:40:31 UTC (6f07d2)0.26vulnerable
2018-10-28 11:35:42 UTC (b4e3a4)0.26vulnerable
2018-10-15 12:50:34 UTC (5d19e3)0.26vulnerable
2018-10-13 20:20:17 UTC (e85e0c)0.26vulnerable
2018-10-13 09:40:17 UTC (d592f2)0.26vulnerable
2018-10-11 15:15:08 UTC (5a38f7)0.26vulnerable
2018-10-09 11:20:30 UTC (c56ede)0.26vulnerable
2018-10-05 13:25:12 UTC (862fb5)0.26vulnerable
2018-10-05 13:00:32 UTC (c4eddc)0.26vulnerable
2018-09-21 06:10:31 UTC (d16a7a)0.26vulnerable
2018-09-19 17:10:27 UTC (8edf56)0.26vulnerable
2018-09-18 17:55:38 UTC (305f13)0.26vulnerable
2018-09-16 07:30:36 UTC (01f5e7)0.26vulnerable
2018-09-13 15:30:12 UTC (5f59ab)0.26vulnerable
2018-09-08 09:20:09 UTC (45f52f)0.26vulnerable
2018-09-02 21:10:32 UTC (8b92a4)0.26vulnerable
2018-09-02 14:20:10 UTC (8c172c)0.26vulnerable
2018-09-01 13:55:20 UTC (a960b8)0.26vulnerable
2018-08-31 04:20:38 UTC (a37638)0.26vulnerable
2018-08-29 17:10:10 UTC (edd63e)0.26vulnerable
2018-08-24 19:10:30 UTC (fde201)0.26vulnerable
2018-08-23 23:50:20 UTC (f094fd)0.26vulnerable
2018-08-19 18:15:22 UTC (4df342)0.26vulnerable
2018-08-18 23:45:22 UTC (47b68d)0.26vulnerable
2018-08-17 21:25:22 UTC (a4e068)0.26vulnerable
2018-08-17 14:30:05 UTC (cd0cd9)0.26vulnerable
2018-08-16 13:20:15 UTC (c1ef96)0.26vulnerable
2018-08-16 08:30:34 UTC (8b4ed6)0.26vulnerable
2018-08-15 15:40:37 UTC (5b8a24)0.26vulnerable
2018-08-15 05:50:22 UTC (66bd47)0.26vulnerable
2018-08-14 17:35:19 UTC (9cbc73)0.26vulnerable
2018-08-13 09:25:26 UTC (10b979)0.26vulnerable
2018-08-13 03:20:34 UTC (89ff9f)0.26vulnerable
2018-08-12 04:35:15 UTC (bfeab2)0.26vulnerable
2018-08-12 00:00:33 UTC (190ec7)0.26vulnerable
2018-08-10 22:20:22 UTC (e42c07)0.26vulnerable
2018-08-10 17:05:22 UTC (2c3f9c)0.26vulnerable
2018-08-09 21:05:22 UTC (3af001)0.26vulnerable
2018-08-07 05:10:16 UTC (230f98)0.26vulnerable
2018-08-03 03:05:12 UTC (d0c868)0.26vulnerable
2018-08-02 12:45:41 UTC (18401b)0.26vulnerable
2018-08-02 06:10:24 UTC (0e55dd)0.26vulnerable
2018-08-01 00:55:32 UTC (a1299c)0.26vulnerable
2018-07-31 16:00:28 UTC (b74b1c)0.26vulnerable
2018-07-30 09:15:16 UTC (6115f4)0.26vulnerable
2018-07-20 17:40:08 UTC (d6c6c7)0.26vulnerable
2018-07-12 04:35:08 UTC (411cc5)0.26vulnerable
2018-07-10 08:10:12 UTC (aec217)0.26vulnerable
2018-07-10 03:15:29 UTC (5e10df)0.26vulnerable
2018-07-09 02:40:20 UTC (e930c6)0.26vulnerable
2018-07-08 17:55:36 UTC (de7ca4)0.26vulnerable
2018-07-08 10:25:33 UTC (298e17)0.26vulnerable
2018-07-04 20:00:25 UTC (56fad1)0.26vulnerable
2018-06-30 13:55:14 UTC (2f06e0)0.26vulnerable
2018-06-29 17:10:06 UTC (0a70d6)0.26vulnerable
2018-06-25 10:30:35 UTC (94d80e)0.26vulnerable
2018-06-23 08:30:21 UTC (91b286)0.26vulnerable
2018-06-21 23:25:24 UTC (68e02f)0.26vulnerable
2018-06-17 01:05:39 UTC (14c248)0.26vulnerable
2018-06-16 09:40:33 UTC (f3c913)0.26vulnerable
2018-06-14 21:57:20 UTC (08d245)0.26vulnerable
nixos-unstable
2019-08-26 09:05:34 UTC (3f4144)0.27.1vulnerable
2019-08-26 04:55:46 UTC (4ca0df)0.27.1vulnerable
2019-08-25 19:30:27 UTC (af9f40)0.27.1vulnerable
2019-08-24 15:10:36 UTC (765a71)0.27.1vulnerable
2019-08-24 01:05:23 UTC (8f8422)0.27.1vulnerable
2019-08-23 05:45:50 UTC (dfc6d5)0.27.1vulnerable
2019-08-22 17:40:25 UTC (54c766)0.27.1vulnerable
2019-08-22 13:40:17 UTC (8b56d2)0.27.1vulnerable
2019-08-19 19:55:45 UTC (1412af)0.27.1vulnerable
2019-08-13 10:35:42 UTC (8746c7)0.27.1vulnerable
2019-08-13 00:30:27 UTC (984851)0.27.1vulnerable
2019-08-11 10:20:42 UTC (4557b9)0.27.1vulnerable
2019-08-10 22:25:37 UTC (387e69)0.27.1vulnerable
2019-08-10 19:40:45 UTC (732c16)0.27.1vulnerable
2019-08-10 11:15:23 UTC (62509f)0.27.1vulnerable
2019-08-09 11:05:33 UTC (52f3c2)0.27.1vulnerable
2019-08-08 22:20:43 UTC (63fa75)0.27.1vulnerable
2019-08-08 12:50:36 UTC (8febac)0.27.1vulnerable
2019-08-07 09:35:32 UTC (e275a6)0.27.1vulnerable
2019-08-06 23:15:38 UTC (ac95de)0.27.1vulnerable
2019-08-06 02:55:20 UTC (40e319)0.27.1vulnerable
2019-08-05 14:30:20 UTC (57d650)0.27.1vulnerable
2019-08-04 19:05:12 UTC (525eaf)0.27.1vulnerable
2019-08-04 10:30:20 UTC (4e8a8a)0.27.1vulnerable
2019-08-04 09:55:38 UTC (d834a4)0.27.1vulnerable
2019-08-04 09:20:28 UTC (c0a858)0.27.1vulnerable
2019-07-29 12:35:34 UTC (239fff)0.27.1vulnerable
2019-07-29 04:15:32 UTC (bf39fc)0.27.1vulnerable
2019-07-29 03:40:31 UTC (15564f)0.27.1vulnerable
2019-07-25 15:40:19 UTC (b5f5c9)0.27.1vulnerable
2019-07-23 20:20:33 UTC (c4fec1)0.27.1vulnerable
2019-07-23 11:55:19 UTC (3d84cf)0.27.1vulnerable
2019-07-22 18:45:22 UTC (62cb4f)0.27.1vulnerable
2019-07-18 10:45:22 UTC (362be9)0.27.1vulnerable
2019-07-12 05:15:25 UTC (1036dc)0.27.1vulnerable
2019-07-08 01:05:26 UTC (beff2f)0.27.1vulnerable
2019-07-07 13:50:29 UTC (aa2a7e)0.27.1vulnerable
2019-07-07 11:30:30 UTC (88c258)0.27.1vulnerable
2019-07-02 04:45:32 UTC (73392e)0.27.1vulnerable
2018-08-02 04:50:18 UTC (2428f5)0.26vulnerable
2018-07-31 15:45:38 UTC (7c5852)0.26vulnerable
2018-07-11 16:40:22 UTC (dae9cf)0.26vulnerable
2018-07-08 19:55:08 UTC (2a8a55)0.26vulnerable
2018-07-08 16:40:22 UTC (784f54)0.26vulnerable
2018-07-06 19:55:40 UTC (fda46a)0.26vulnerable
2018-07-02 04:50:18 UTC (be1461)0.26vulnerable
2018-07-01 00:20:18 UTC (687f5d)0.26vulnerable
2018-06-30 12:30:34 UTC (85497a)0.26vulnerable
2018-06-29 19:45:17 UTC (e686bd)0.26vulnerable
2018-06-22 13:15:24 UTC (a8c710)0.26vulnerable
2018-06-14 21:57:20 UTC (4b649a)0.26vulnerable