Junglewise Threat Intelligence

CVE-2021-31292: PYSEC-2021-877 - An integer overflow in CrwMap::encode0x1810 of Exiv2 0.27.3 allows attackers to trigger a heap-based buffer overflow and cause a denial of s

CVE-2021-31292 · Severity: low · CVSS 3.1 · Published 2021-07-26

Technologies: exiv2 (PyPI). Vendors: PyPI.

Executive brief

An integer overflow in CrwMap::encode0x1810 of Exiv2 0.27.3 allows attackers to trigger a heap-based buffer overflow and cause a denial of service (DOS) via crafted metadata.

Affected products

  • PyPI exiv2

Related threats