FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2025-05-11 17:00:43 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
3e44c35f-6cf4-11ef-b813-4ccc6adda413exiv2 -- Out-of-bounds read in AsfVideo::streamProperties

Kevin Backhouse reports:

An out-of-bounds read was found in Exiv2 version v0.28.2. The vulnerability is in the parser for the ASF video format, which was a new feature in v0.28.0, so Exiv2 versions before v0.28 are not affected. The out-of-bounds read is triggered when Exiv2 is used to read the metadata of a crafted video file.


Discovery 2024-04-21
Entry 2024-09-07
exiv2
>= 0.28.0,1 lt 0.28.3,1

CVE-2024-39695
https://github.com/Exiv2/exiv2/security/advisories/GHSA-38rv-8x93-pvrh