Open Source Security mailing list@oss_securityPatch
Exiv2 0.28.8 addresses three CVEs involving out‑of‑bounds reads and integer overflows, providing patches but no PoC or evidence of exploitation.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The post announces CVE-2026-27631, a Denial of Service vulnerability in Exiv2, with links to details but no PoC, exploit, or patch information.
Infoflowcloud@infoflowcloudDisclosure
The post announces CVE-2026-27631, noting an uncaught exception in Exiv2 before version 0.28.8, but provides no PoC, exploit, patch, or active exploitation details.
CVE@CVEnewGeneral
The text references CVE-2026-27631, noting an uncaught exception in Exiv2 before version 0.28.8, but provides no further details or actionable information.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
Alert announces CVE-2026-27631 in Exiv2, detailing an uncaught exception caused by exceeding std::vector max_size, with a link to an Intel report.