CVE-2017-14859 on Ubuntu 16.04 LTS (xenial) - low.
Description:
An Invalid memory address dereference was discovered in Exiv2::StringValueBase::read in value.cpp in Exiv2 0.26. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.