Medium severity6.5NVD Advisory· Published Aug 22, 2023· Updated Jun 17, 2026
CVE-2020-18652
CVE-2020-18652
Description
Buffer Overflow vulnerability in WEBP_Support.cpp in exempi 2.5.0 and earlier allows remote attackers to cause a denial of service via opening of crafted webp file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- exempi/exempidescription
- Range: <=2.5.0
- osv-coords6 versionspkg:rpm/almalinux/exempipkg:rpm/almalinux/exempi-develpkg:rpm/opensuse/exempi&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/exempi&distro=openSUSE%20Leap%2015.5pkg:rpm/suse/exempi&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP4pkg:rpm/suse/exempi&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP5
< 2.4.5-4.el8+ 5 more
- (no CPE)range: < 2.4.5-4.el8
- (no CPE)range: < 2.4.5-4.el8
- (no CPE)range: < 2.4.5-150000.3.6.1
- (no CPE)range: < 2.4.5-150000.3.6.1
- (no CPE)range: < 2.4.5-150000.3.6.1
- (no CPE)range: < 2.4.5-150000.3.6.1
Patches
Vulnerability mechanics
References
3- gitlab.freedesktop.org/libopenraw/exempi/commit/acee2894ceb91616543927c2a6e45050c60f98f7nvdPatch
- gitlab.freedesktop.org/libopenraw/exempi/issues/12nvdExploitIssue TrackingThird Party Advisory
- lists.debian.org/debian-lts-announce/2023/09/msg00032.htmlnvd
News mentions
0No linked articles in our index yet.