<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 15:16:14 +0000</lastBuildDate>
    <item>
      <title>CVE-2025-54080 — Exiv2 Segmentation Faults in Exiv2::EpsImage::writeMetadata() via crafted EPS file</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2025-54080</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; exiv2&lt;/p&gt;
&lt;p&gt;Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. An out-of-bounds read was found in Exiv2 versions 0.28.5 and earlier. The out-of-bounds read is triggered when Exiv2 is used to write metadata into a crafted image file. An attacker could potentially exploit the vulnerability to cause a denial of service by crashing Exiv2, if they can trick the victim into running Exiv2 on a crafted image file. Note that this bug is only triggered when writing the metadata, which is a less frequently used Exiv2 operation than reading the metadata. The bug is fixed in version 0.28.6.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; exiv2&lt;/p&gt;
&lt;p&gt;Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. An out-of-bounds read was found in Exiv2 versions 0.28.5 and earlier. The out-of-bounds read is triggered when Exiv2 is used to write metadata into a crafted image file. An attacker could potentially exploit the vulnerability to cause a denial of service by crashing Exiv2, if they can trick the victim into running Exiv2 on a crafted image file. Note that this bug is only triggered when writing the metadata, which is a less frequently used Exiv2 operation than reading the metadata. The bug is fixed in version 0.28.6.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2025-54080</guid>
    </item>
    <item>
      <title>GHSA-496f-x7cq-cq39 — Exiv2 Segmentation Faults in Exiv2::EpsImage::writeMetadata() via crafted EPS file</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-496f-x7cq-cq39</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: Exiv2&lt;/p&gt;
&lt;p&gt;### Impact
An out-of-bounds read was found in Exiv2 versions v0.28.5 and earlier. Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. The out-of-bounds read is triggered when Exiv2 is used to write metadata into a crafted image file. An attacker could potentially exploit the vulnerability to cause a denial of service by crashing Exiv2, if they can trick the victim into running Exiv2 on a crafted image file.&lt;/p&gt;
&lt;p&gt;Note that this bug is only triggered when writing the metadata, which is a less frequently used Exiv2 operation than reading the metadata. For example, to trigger the bug in the Exiv2 command-line application, you need to add an extra command-line argument such as delete.&lt;/p&gt;
&lt;p&gt;### Patches
The bug is fixed in version v0.28.6.&lt;/p&gt;
&lt;p&gt;### Credit
Thank you to @dragonArthurX for reporting this issue.&lt;/p&gt;
&lt;p&gt;### Details (from original report by @dragonArthurX )
**Version:**
Tested on v0.28.5 (latest official release)
Commit: 907169fa643c2c74c14fd4106e55eaeee3634d9f&lt;/p&gt;
&lt;p&gt;**Platform:**
Ubuntu 20.04.6 LTS (x86_64)&lt;/p&gt;
&lt;p&gt;**Build Steps:**
```bash
git clone https://github.com/Exiv2/exiv2.git
cd exiv2
git checkout v0.28.5
mkdir build-v0.28.5 &amp;amp;&amp;amp; cd build-v0.28.5
cmake -DCMAKE_C_COMPILER=/fuzzer/afl-clang-fast -DCMAKE_CXX_COMPILER=/fuzzer/afl-clang-fast++ -DCMAKE_C_FLAGS=&amp;#34;-g -fsanitize=address&amp;#34; -DCMAKE_CXX_FLAGS=&amp;#34;-g -fsanitize=address&amp;#34; -DBUILD_SHARED_LIBS=OFF ../
```&lt;/p&gt;
&lt;p&gt;**Command line to reproduce:**
```bash
/home/exiv2/build/bin/exiv2 -d a -…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: Exiv2&lt;/p&gt;
&lt;p&gt;### Impact
An out-of-bounds read was found in Exiv2 versions v0.28.5 and earlier. Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. The out-of-bounds read is triggered when Exiv2 is used to write metadata into a crafted image file. An attacker could potentially exploit the vulnerability to cause a denial of service by crashing Exiv2, if they can trick the victim into running Exiv2 on a crafted image file.&lt;/p&gt;
&lt;p&gt;Note that this bug is only triggered when writing the metadata, which is a less frequently used Exiv2 operation than reading the metadata. For example, to trigger the bug in the Exiv2 command-line application, you need to add an extra command-line argument such as delete.&lt;/p&gt;
&lt;p&gt;### Patches
The bug is fixed in version v0.28.6.&lt;/p&gt;
&lt;p&gt;### Credit
Thank you to @dragonArthurX for reporting this issue.&lt;/p&gt;
&lt;p&gt;### Details (from original report by @dragonArthurX )
**Version:**
Tested on v0.28.5 (latest official release)
Commit: 907169fa643c2c74c14fd4106e55eaeee3634d9f&lt;/p&gt;
&lt;p&gt;**Platform:**
Ubuntu 20.04.6 LTS (x86_64)&lt;/p&gt;
&lt;p&gt;**Build Steps:**
```bash
git clone https://github.com/Exiv2/exiv2.git
cd exiv2
git checkout v0.28.5
mkdir build-v0.28.5 &amp;amp;&amp;amp; cd build-v0.28.5
cmake -DCMAKE_C_COMPILER=/fuzzer/afl-clang-fast -DCMAKE_CXX_COMPILER=/fuzzer/afl-clang-fast++ -DCMAKE_C_FLAGS=&amp;#34;-g -fsanitize=address&amp;#34; -DCMAKE_CXX_FLAGS=&amp;#34;-g -fsanitize=address&amp;#34; -DBUILD_SHARED_LIBS=OFF ../
```&lt;/p&gt;
&lt;p&gt;**Command line to reproduce:**
```bash
/home/exiv2/build/bin/exiv2 -d a -…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-496f-x7cq-cq39</guid>
    </item>
  </channel>
</rss>
