
Cloud Vulnerability DB
A community-led vulnerabilities database
The vulnerability CVE-2022-24614 affects metadata-extractor versions up to 2.16.0. The vulnerability was discovered in February 2022 and involves a memory allocation issue when processing specially crafted JPEG files (NVD).
When reading a specially crafted JPEG file, metadata-extractor up to version 2.16.0 can be made to allocate large amounts of memory that ultimately leads to an out-of-memory condition. This vulnerability is related to memory handling in the application's JPEG processing functionality (NVD).
The vulnerability can result in out-of-memory conditions when processing maliciously crafted JPEG files, potentially leading to denial of service in applications using the affected versions of metadata-extractor (NVD).
Users should upgrade to a version of metadata-extractor newer than 2.16.0 which contains fixes for this vulnerability. The issue has been addressed in subsequent releases of the software (NVD).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."