Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-7544

Опубликовано: 21 сент. 2017
Источник: debian
EPSS Низкий

Описание

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libexiffixed0.6.21-2.1package
libexiffixed0.6.21-2+deb9u2stretchpackage
libexifno-dsawheezypackage

Примечания

  • https://sourceforge.net/p/libexif/bugs/130/

EPSS

Процентиль: 87%
0.03273
Низкий

Связанные уязвимости

CVSS3: 9.1
ubuntu
почти 9 лет назад

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.

CVSS3: 3.3
redhat
около 9 лет назад

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.

CVSS3: 9.1
nvd
почти 9 лет назад

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.

suse-cvrf
больше 8 лет назад

Security update for libexif

CVSS3: 9.1
github
больше 4 лет назад

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.

EPSS

Процентиль: 87%
0.03273
Низкий