[CLSA-2026:1774266009] exiv2: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2026-03-23 11:40:14 UTC
Description:
- CVE-2026-25884: fix out-of-bounds read in CRW image parser - CVE-2026-27596: fix integer underflow in preview component
Updated packages:
  • exiv2-0.27.5-2.el9.tuxcare.els3.x86_64.rpm
    sha:50f6424004789a4090b338497c07e154aa4827a309642806150e241b102297a4
  • exiv2-devel-0.27.5-2.el9.tuxcare.els3.i686.rpm
    sha:2bf8d17f9ca3674fe68540d2726308c9c0380d1e7c7f76ffc132705d825518fa
  • exiv2-devel-0.27.5-2.el9.tuxcare.els3.x86_64.rpm
    sha:c50df4c8a77730b1fc8f6ae264097690fe1b134ebe5b347067d4c6cc318cef42
  • exiv2-doc-0.27.5-2.el9.tuxcare.els3.noarch.rpm
    sha:b463fbfc643431dd4f1898aa6c1af21b36aea5cd63109b50e8183d4d48e5237a
  • exiv2-libs-0.27.5-2.el9.tuxcare.els3.i686.rpm
    sha:c16f43dc86f603ac325dc627c8445681cdf07b6dbae6f783aa46d43660503614
  • exiv2-libs-0.27.5-2.el9.tuxcare.els3.x86_64.rpm
    sha:d3a4cf44418bd446d8c16bef543da8003bfdfa43602be754b1b6e70cbccebf9f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.