-
Notifications
You must be signed in to change notification settings - Fork 281
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Infinite loop in Exiv2::Image::printIFDStructure function of image.cpp:509 #511
Comments
This seems to be fixed. I've tried
|
It should be the poc file in here, not POC4. |
Thanks. I've reproduced this. I'll investigate. |
This issue was assigned CVE-2018-18915 |
I also could reproduce the issue and I think I have found a solution for it. I will try to bring the fix for v0.27. |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
The issue may be similar to the issue #51 , with the POC file provided, The vulue of the start will always be
0xfc0000
, so the condition will be true all the time../exiv2 -pC poc_infinite_loop or the command ./exiv2 -pR poc_infinite_loop can trigger the situation:
The text was updated successfully, but these errors were encountered: