Rapid7’s 2026 Global Cybersecurity Summit is now available on-demand.Watch sessions.
Rapid7

vulnerability

Alma Linux: CVE-2018-9305: Moderate: exiv2 security, bug fix, and enhancement update (ALSA-2020-1577)

Severity
6
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:P)
Published
Apr 4, 2018
Added
May 4, 2022
Modified
Apr 17, 2026

Description

In Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in iptc.c could result in a crash or information leak, related to the "== 0x1c" case.

Solutions

alma-upgrade-exiv2-develalma-upgrade-exiv2-docalma-upgrade-geglalma-upgrade-gnome-color-manageralma-upgrade-libgexiv2alma-upgrade-libgexiv2-devel
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.