Exiv2 0.26 has a heap-based buffer overflow in getData in preview.cpp.
{ "urgency": "not yet assigned" }