Junglewise Threat Intelligence

PYSEC-2021-883 - An invalid memory access in the decode function in iptc.cpp of Exiv2 0.27.99.0 allows attackers to cause a denial of service (DOS) via a cra

Severity: low · CVSS 3.1 · Published 2021-08-23

Technologies: exiv2 (PyPI). Vendors: PyPI.

Executive brief

An invalid memory access in the decode function in iptc.cpp of Exiv2 0.27.99.0 allows attackers to cause a denial of service (DOS) via a crafted tif file.

Affected products

  • PyPI exiv2

Related threats