An issue was discovered in Exempi before 2.4.3. The VPXChunk class in XMPFiles/source/FormatSupport/WEBP_Support.cpp does not ensure nonzero widths and heights, which allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted .webp file.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-03-15T19:00:00Z
Updated: 2024-09-17T00:56:54.588Z
Reserved: 2018-03-15T00:00:00Z
Link: CVE-2017-18235
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-03-15T19:29:00.327
Modified: 2024-11-21T03:19:38.740
Link: CVE-2017-18235
Redhat