Medium severity6.5NVD Advisory· Published May 14, 2018· Updated Jun 17, 2026
CVE-2018-11037
CVE-2018-11037
Description
In Exiv2 0.26, the Exiv2::PngImage::printStructure function in pngimage.cpp allows remote attackers to cause an information leak via a crafted file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- osv-coords6 versionspkg:rpm/almalinux/exiv2-develpkg:rpm/almalinux/exiv2-docpkg:rpm/almalinux/geglpkg:rpm/almalinux/gnome-color-managerpkg:rpm/almalinux/libgexiv2pkg:rpm/almalinux/libgexiv2-devel
< 0.27.2-5.el8+ 5 more
- (no CPE)range: < 0.27.2-5.el8
- (no CPE)range: < 0.27.2-5.el8
- (no CPE)range: < 0.2.0-39.el8
- (no CPE)range: < 3.28.0-3.el8
- (no CPE)range: < 0.10.8-4.el8
- (no CPE)range: < 0.10.8-4.el8
Patches
Vulnerability mechanics
References
3- github.com/Exiv2/exiv2/issues/307nvdExploitIssue TrackingThird Party Advisory
- security.gentoo.org/glsa/201811-14nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2019:2101nvd
News mentions
0No linked articles in our index yet.