vulnerability
Ubuntu: USN-3852-1 (CVE-2017-14859): Exiv2 vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:N/I:N/A:P) | Sep 28, 2017 | Jan 17, 2019 | Aug 18, 2025 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Sep 28, 2017
Added
Jan 17, 2019
Modified
Aug 18, 2025
Description
It was discovered that Exiv2 incorrectly handled certain files.
An attacker could possibly use this issue to cause a denial of service.
CVE-2017-9239 only affected Ubuntu 14.04 LTS and Ubuntu 16.04 LTS.
(CVE-2017-11591, CVE-2017-11683, CVE-2017-14859, CVE-2017-14862,
CVE-2017-14864, CVE-2017-17669, CVE-2017-9239, CVE-2018-16336,
CVE-2018-1758)
Solutions
ubuntu-upgrade-exiv2ubuntu-upgrade-libexiv2-12ubuntu-upgrade-libexiv2-14
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.