Medium severity5.5NVD Advisory· Published Jan 3, 2018· Updated Jun 17, 2026
CVE-2018-4868
CVE-2018-4868
Description
The Exiv2::Jp2Image::readMetadata function in jp2image.cpp in Exiv2 0.26 allows remote attackers to cause a denial of service (excessive memory allocation) via a crafted file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- osv-coords6 versionspkg:rpm/almalinux/exiv2-develpkg:rpm/almalinux/exiv2-docpkg:rpm/almalinux/geglpkg:rpm/almalinux/gnome-color-managerpkg:rpm/almalinux/libgexiv2pkg:rpm/almalinux/libgexiv2-devel
< 0.27.2-5.el8+ 5 more
- (no CPE)range: < 0.27.2-5.el8
- (no CPE)range: < 0.27.2-5.el8
- (no CPE)range: < 0.2.0-39.el8
- (no CPE)range: < 3.28.0-3.el8
- (no CPE)range: < 0.10.8-4.el8
- (no CPE)range: < 0.10.8-4.el8
Patches
Vulnerability mechanics
References
2- github.com/Exiv2/exiv2/issues/202nvdExploitIssue TrackingThird Party Advisory
- www.securityfocus.com/bid/102477nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.