"value":"** DISPUTED ** The Exiv2::Jp2Image::readMetadata function in jp2image.cpp in Exiv2 0.26 allows remote attackers to cause a denial of service (excessive memory allocation) via a crafted file. NOTE: a software maintainer disputes this issue because it may reflect an invalid use of the AddressSanitizer tool on a system with only 1 Gb of memory."