Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2019-13504
There is an out-of-bounds read in Exiv2::MrwImage::readMetadata in mrwimage.cpp in Exiv2 through 0.27.2.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.002
EPSS Ranking
42.9%
CVSS Severity
CVSS v3 Score
6.5
CVSS v2 Score
4.3
References
http://www.securityfocus.com/bid/109117
https://fuzzit.dev/2019/07/11/discovering-cve-2019-13504-cve-2019-13503-and-the-importance-of-api-fuzzing/
https://github.com/Exiv2/exiv2/pull/943
https://lists.debian.org/debian-lts-announce/2019/07/msg00015.html
https://lists.debian.org/debian-lts-announce/2023/01/msg00004.html
http://www.securityfocus.com/bid/109117
https://fuzzit.dev/2019/07/11/discovering-cve-2019-13504-cve-2019-13503-and-the-importance-of-api-fuzzing/
https://github.com/Exiv2/exiv2/pull/943
https://lists.debian.org/debian-lts-announce/2019/07/msg00015.html
https://lists.debian.org/debian-lts-announce/2023/01/msg00004.html
Products affected by CVE-2019-13504
Exiv2
»
Exiv2
»
Version:
N/A
cpe:2.3:a:exiv2:exiv2:-
Exiv2
»
Exiv2
»
Version:
0.10
cpe:2.3:a:exiv2:exiv2:0.10
Exiv2
»
Exiv2
»
Version:
0.11
cpe:2.3:a:exiv2:exiv2:0.11
Exiv2
»
Exiv2
»
Version:
0.12
cpe:2.3:a:exiv2:exiv2:0.12
Exiv2
»
Exiv2
»
Version:
0.13
cpe:2.3:a:exiv2:exiv2:0.13
Exiv2
»
Exiv2
»
Version:
0.14
cpe:2.3:a:exiv2:exiv2:0.14
Exiv2
»
Exiv2
»
Version:
0.15
cpe:2.3:a:exiv2:exiv2:0.15
Exiv2
»
Exiv2
»
Version:
0.16
cpe:2.3:a:exiv2:exiv2:0.16
Exiv2
»
Exiv2
»
Version:
0.17
cpe:2.3:a:exiv2:exiv2:0.17
Exiv2
»
Exiv2
»
Version:
0.17.1
cpe:2.3:a:exiv2:exiv2:0.17.1
Exiv2
»
Exiv2
»
Version:
0.18
cpe:2.3:a:exiv2:exiv2:0.18
Exiv2
»
Exiv2
»
Version:
0.18.1
cpe:2.3:a:exiv2:exiv2:0.18.1
Exiv2
»
Exiv2
»
Version:
0.18.2
cpe:2.3:a:exiv2:exiv2:0.18.2
Exiv2
»
Exiv2
»
Version:
0.19
cpe:2.3:a:exiv2:exiv2:0.19
Exiv2
»
Exiv2
»
Version:
0.20
cpe:2.3:a:exiv2:exiv2:0.20
Exiv2
»
Exiv2
»
Version:
0.21
cpe:2.3:a:exiv2:exiv2:0.21
Exiv2
»
Exiv2
»
Version:
0.21.1
cpe:2.3:a:exiv2:exiv2:0.21.1
Exiv2
»
Exiv2
»
Version:
0.22
cpe:2.3:a:exiv2:exiv2:0.22
Exiv2
»
Exiv2
»
Version:
0.23
cpe:2.3:a:exiv2:exiv2:0.23
Exiv2
»
Exiv2
»
Version:
0.24
cpe:2.3:a:exiv2:exiv2:0.24
Exiv2
»
Exiv2
»
Version:
0.25
cpe:2.3:a:exiv2:exiv2:0.25
Exiv2
»
Exiv2
»
Version:
0.26
cpe:2.3:a:exiv2:exiv2:0.26
Exiv2
»
Exiv2
»
Version:
0.27
cpe:2.3:a:exiv2:exiv2:0.27
Exiv2
»
Exiv2
»
Version:
0.27.1
cpe:2.3:a:exiv2:exiv2:0.27.1
Exiv2
»
Exiv2
»
Version:
0.27.2
cpe:2.3:a:exiv2:exiv2:0.27.2
Exiv2
»
Exiv2
»
Version:
0.3
cpe:2.3:a:exiv2:exiv2:0.3
Exiv2
»
Exiv2
»
Version:
0.4
cpe:2.3:a:exiv2:exiv2:0.4
Exiv2
»
Exiv2
»
Version:
0.5
cpe:2.3:a:exiv2:exiv2:0.5
Exiv2
»
Exiv2
»
Version:
0.6
cpe:2.3:a:exiv2:exiv2:0.6
Exiv2
»
Exiv2
»
Version:
0.6.1
cpe:2.3:a:exiv2:exiv2:0.6.1
Exiv2
»
Exiv2
»
Version:
0.6.2
cpe:2.3:a:exiv2:exiv2:0.6.2
Exiv2
»
Exiv2
»
Version:
0.7
cpe:2.3:a:exiv2:exiv2:0.7
Exiv2
»
Exiv2
»
Version:
0.8
cpe:2.3:a:exiv2:exiv2:0.8
Exiv2
»
Exiv2
»
Version:
0.9
cpe:2.3:a:exiv2:exiv2:0.9
Exiv2
»
Exiv2
»
Version:
0.9.1
cpe:2.3:a:exiv2:exiv2:0.9.1
Debian
»
Debian Linux
»
Version:
10.0
cpe:2.3:o:debian:debian_linux:10.0
Debian
»
Debian Linux
»
Version:
8.0
cpe:2.3:o:debian:debian_linux:8.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved