Medium severity5.5NVD Advisory· Published Dec 31, 2017· Updated May 13, 2026
CVE-2017-18005
CVE-2017-18005
Description
Exiv2 0.26 has a Null Pointer Dereference in the Exiv2::DataValue::toLong function in value.cpp, related to crafted metadata in a TIFF file.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/Exiv2/exiv2/issues/168nvdExploitIssue TrackingThird Party Advisory
- lists.debian.org/debian-lts-announce/2023/01/msg00004.htmlnvdMailing ListThird Party Advisory
News mentions
0No linked articles in our index yet.