CVE-2020-18899
published 2021-08-19CVE-2020-18899: An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) function of Exiv2 0.27 allows attackers to cause a denial of service (DOS) via a…
PriorityP425medium6.5CVSS 3.1
AVNACLPRNUIRSUCNINAH
EPSS
1.66%
74.3th percentile
An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) function of Exiv2 0.27 allows attackers to cause a denial of service (DOS) via a crafted input.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | exiv2 | < exiv2 0.27.2-6 (bookworm) | exiv2 0.27.2-6 (bookworm) |
| exiv2 | exiv2 | — | — |
| exiv2 | exiv2 | >= 0 < 0.27.2-6 | 0.27.2-6 |
| exiv2 | exiv2 | >= 0 < 0.27.2-6 | 0.27.2-6 |
| exiv2 | exiv2 | >= 0 < 0.27.2-6 | 0.27.2-6 |
| exiv2 | exiv2 | >= 0 < 0.27.2-6 | 0.27.2-6 |
| exiv2 | exiv2 | >= 0 < 0.27.5-3ubuntu1.1 | 0.27.5-3ubuntu1.1 |
| exiv2 | exiv2 | >= 0 < 0.27.5-3ubuntu1.3 | 0.27.5-3ubuntu1.3 |
| exiv2 | exiv2 | >= 0 < 0.27.6-1ubuntu0.1 | 0.27.6-1ubuntu0.1 |
| exiv2 | exiv2 | >= 0 < 0.27.6-1ubuntu0.3 | 0.27.6-1ubuntu0.3 |
| exiv2 | exiv2 | >= 0 < 0.28.5+dfsg-1ubuntu0.1 | 0.28.5+dfsg-1ubuntu0.1 |
| exiv2 | exiv2 | >= 0 < 0.28.5+dfsg-1ubuntu0.3 | 0.28.5+dfsg-1ubuntu0.3 |
| exiv2 | exiv2 | >= 0 < 0.25-2.1ubuntu16.04.7+esm5 | 0.25-2.1ubuntu16.04.7+esm5 |
| exiv2 | exiv2 | >= 0 < 0.25-3.1ubuntu0.18.04.11+esm1 | 0.25-3.1ubuntu0.18.04.11+esm1 |
| exiv2 | exiv2 | >= 0 < 0.27.2-8ubuntu2.7+esm1 | 0.27.2-8ubuntu2.7+esm1 |
| exiv2 | exiv2 | >= 0 < 0.27.2-8ubuntu2.7+esm3 | 0.27.2-8ubuntu2.7+esm3 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv8.1HIGH
vendor_ubuntu8.1HIGH
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
exiv2 regression
osv·2026-03-19·CVSS 8.1
CVE-2020-18771 [HIGH] exiv2 regression
exiv2 regression
USN-8103-1 fixed vulnerabilities in Exiv2. The update caused a regression
for Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS and
Ubuntu 25.10. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
It was discovered that Exiv2 did not correctly handle reading certain
buffers. An attacker could possibly use this issue to leak sensitive
information. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04
LTS. (CVE-2020-18771)
Wen Cheng discovered that Exiv2 did not correctly handle certain memory
allocation. If a user or system were tricked into opening a specially
crafted file, an attacker could possibly use this issue to cause a denial
of service. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04 LTS.
(CVE-2020-
OSV
exiv2 vulnerabilities
osv·2026-03-18·CVSS 8.1
CVE-2020-18771 [HIGH] exiv2 vulnerabilities
exiv2 vulnerabilities
It was discovered that Exiv2 did not correctly handle reading certain
buffers. An attacker could possibly use this issue to leak sensitive
information. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04
LTS. (CVE-2020-18771)
Wen Cheng discovered that Exiv2 did not correctly handle certain memory
allocation. If a user or system were tricked into opening a specially
crafted file, an attacker could possibly use this issue to cause a denial
of service. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04 LTS.
(CVE-2020-18899)
It was discovered that Exiv2 did not correctly handle writing certain
metadata. If a user or system were tricked into opening a specially crafted
file, an attacker could possibly use this issue to cause a denial of
service. (CVE-2025
GHSA
GHSA-44mj-pwh6-pw78: An uncontrolled memory allocation in DataBufdata(subBox
ghsa_unreviewed·2022-05-24
CVE-2020-18899 [MEDIUM] CWE-770 GHSA-44mj-pwh6-pw78: An uncontrolled memory allocation in DataBufdata(subBox
An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) function of Exiv2 0.27 allows attackers to cause a denial of service (DOS) via a crafted input.
OSV
CVE-2020-18899: An uncontrolled memory allocation in DataBufdata(subBox
osv·2021-08-19·CVSS 6.5
CVE-2020-18899 [MEDIUM] CVE-2020-18899: An uncontrolled memory allocation in DataBufdata(subBox
An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) function of Exiv2 0.27 allows attackers to cause a denial of service (DOS) via a crafted input.
Ubuntu
Exiv2 regression
vendor_ubuntu·2026-03-19·CVSS 8.1
CVE-2025-55304 [HIGH] Exiv2 regression
Title: Exiv2 regression
Summary: USN-8103-1 introduced a regression in Exiv2
USN-8103-1 fixed vulnerabilities in Exiv2. The update caused a regression
for Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS and
Ubuntu 25.10. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
It was discovered that Exiv2 did not correctly handle reading certain
buffers. An attacker could possibly use this issue to leak sensitive
information. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04
LTS. (CVE-2020-18771)
Wen Cheng discovered that Exiv2 did not correctly handle certain memory
allocation. If a user or system were tricked into opening a specially
crafted file, an attacker could possibly use this issue to cause a denial
of service. This issue on
Ubuntu
Exiv2 vulnerabilities
vendor_ubuntu·2026-03-18·CVSS 8.1
CVE-2026-27631 [HIGH] Exiv2 vulnerabilities
Title: Exiv2 vulnerabilities
Summary: Several security issues were fixed in Exiv2.
It was discovered that Exiv2 did not correctly handle reading certain
buffers. An attacker could possibly use this issue to leak sensitive
information. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04
LTS. (CVE-2020-18771)
Wen Cheng discovered that Exiv2 did not correctly handle certain memory
allocation. If a user or system were tricked into opening a specially
crafted file, an attacker could possibly use this issue to cause a denial
of service. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04 LTS.
(CVE-2020-18899)
It was discovered that Exiv2 did not correctly handle writing certain
metadata. If a user or system were tricked into opening a specially crafted
file, an attacker could p
Red Hat
exiv2: uncontrolled memory allocation in DataBufdata may lead to DoS
vendor_redhat·2021-08-19·CVSS 6.5
CVE-2020-18899 [MEDIUM] CWE-770 exiv2: uncontrolled memory allocation in DataBufdata may lead to DoS
exiv2: uncontrolled memory allocation in DataBufdata may lead to DoS
An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) function of Exiv2 0.27 allows attackers to cause a denial of service (DOS) via a crafted input.
Package: exiv2 (Red Hat Enterprise Linux 6) - Out of support scope
Package: compat-exiv2-023 (Red Hat Enterprise Linux 7) - Out of support scope
Package: compat-exiv2-026 (Red Hat Enterprise Linux 7) - Out of support scope
Package: exiv2 (Red Hat Enterprise Linux 7) - Out of support scope
Package: compat-exiv2-026 (Red Hat Enterprise Linux 8) - Not affected
Package: exiv2 (Red Hat Enterprise Linux 8) - Not affected
Package: exiv2 (Red Hat Enterprise Linux 9) - Not affected
Debian
CVE-2020-18899: exiv2 - An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) func...
vendor_debian·2020·CVSS 6.5
CVE-2020-18899 [MEDIUM] CVE-2020-18899: exiv2 - An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) func...
An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) function of Exiv2 0.27 allows attackers to cause a denial of service (DOS) via a crafted input.
Scope: local
bookworm: resolved (fixed in 0.27.2-6)
bullseye: resolved (fixed in 0.27.2-6)
forky: resolved (fixed in 0.27.2-6)
sid: resolved (fixed in 0.27.2-6)
trixie: resolved (fixed in 0.27.2-6)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-08-19
Published