ZeroHour

CVE-2018-19567

CVSS 3.0
5.5 medium
EPSS
<1%p58
Published
()
Modified
Description

A floating point exception in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an application that bundles the dcraw code.

Vendors
dcraw project
Products
dcraw
Weakness
CWE-119
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.