AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-11034

CRITICAL · CVSS 9.1 EPSS 4.09%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-04-18 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2019-11034
Severity
CRITICAL
CVSS
9.1
EPSS
4.09%

Original NVD Description

When processing certain files, PHP EXIF extension in versions 7.1.x below 7.1.28, 7.2.x below 7.2.17 and 7.3.x below 7.3.4 can be caused to read past allocated buffer in exif_process_IFD_TAG function. This may lead to information disclosure or crash.