HIGH7.8
PYSEC-2023-150
Details
Buffer Overflow vulnerability in tEXtToDataBuf function in pngimage.cpp in Exiv2 0.27.1 allows remote attackers to cause a denial of service and other unspecified impacts via use of crafted file.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/exiv2
Introduced in:
0No fixed version published yet for exiv2 (pip). Pin to a known-safe version or switch to an alternative.