<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:17:42.406739+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2021:3152</id>
    <title>ALSA-2021:3152 — Important: exiv2 security update</title>
    <updated>2026-10-03T05:17:42.424486+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: exiv2-devel, AlmaLinux:8: exiv2-doc</p>
<p>Exiv2 is a C++ library to access image metadata, supporting read and write access to the Exif, IPTC and XMP metadata, Exif MakerNote support, extract and delete methods for Exif thumbnails, classes to access Ifd, and support for various image formats.</p>
<p>Security Fix(es):</p>
<p>* exiv2: Heap-based buffer overflow vulnerability in jp2image.cpp (CVE-2021-31291)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2021:3152"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2024-wk46975</id>
    <title>CLEANSTART-2024-WK46975 — Rejected reason: DO NOT USE THIS CANDIDATE NUMBER</title>
    <updated>2026-10-03T05:17:42.424568+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: exiv2</p>
<p>Security vulnerability affects the exiv2 package. Rejected reason: DO NOT USE THIS CANDIDATE NUMBER.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2024-wk46975"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-62190</id>
    <title>cnvd-2021-62190</title>
    <updated>2026-10-03T05:17:42.424603+00:00</updated>
    <content>cnvd-2021-62190</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-62190"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-31291</id>
    <title>fkie_cve-2021-31291</title>
    <updated>2026-10-03T05:17:42.424626+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-29457. Reason: This candidate is a duplicate of CVE-2021-29457. Notes: All CVE users should reference CVE-2021-29457 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-31291"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-f74q-rm7p-mwq5</id>
    <title>GHSA-f74q-rm7p-mwq5</title>
    <updated>2026-10-03T05:17:42.424663+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A heap-based buffer overflow vulnerability in jp2image.cpp of Exiv2 0.27.3 allows attackers to cause a denial of service (DOS) via crafted metadata.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-f74q-rm7p-mwq5"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-31291</id>
    <title>gsd-2021-31291</title>
    <updated>2026-10-03T05:17:42.424698+00:00</updated>
    <content>gsd-2021-31291</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-31291"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12381-1</id>
    <title>openSUSE-SU-2024:12381-1 — exiv2-0.27.5-3.1 on GA media</title>
    <updated>2026-10-03T05:17:42.424723+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>exiv2-0.27.5-3.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:12381-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:3230</id>
    <title>RHSA-2021:3230 — Red Hat Security Advisory: compat-exiv2-026 security update</title>
    <updated>2026-10-03T05:17:42.424756+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>exiv2: Heap-based buffer overflow vulnerability in jp2image.cpp</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:3230"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2022:3543-1</id>
    <title>SUSE-SU-2022:3543-1 — Security update for exiv2</title>
    <updated>2026-10-03T05:17:42.424815+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for exiv2</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2022:3543-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-31291</id>
    <title>UBUNTU-CVE-2021-31291</title>
    <updated>2026-10-03T05:17:42.424855+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: exiv2, Ubuntu:18.04:LTS: exiv2, Ubuntu:20.04:LTS: exiv2</p>
<p>Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-29457. Reason: This candidate is a duplicate of CVE-2021-29457. Notes: All CVE users should reference CVE-2021-29457 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-31291"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1640</id>
    <title>WID-SEC-W-2022-1640 — Red Hat Enterprise Linux (exiv2): Schwachstelle ermöglicht Ausführen von beliebigem Programmcode mit den Rechten des Di…</title>
    <updated>2026-10-03T05:17:42.424895+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux in der Komponente exiv2 ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1640"/>
  </entry>
</feed>
