A new Debian Linux update has been published: ELA-766-1 exiv2 security update
An EXIV2 security update has been released for Debian GNU/Linux 9 Extended LTS to address a number of memory access violations and other input validation failures that can be triggered by passing specially crafted files.Read more @ Linux Compatible