Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-32775

Опубликовано: 16 мар. 2026
Источник: debian
EPSS Низкий

Описание

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libexiffixed0.6.26-1package
libexiffixed0.6.25-1+deb13u1trixiepackage
libexiffixed0.6.24-1+deb12u1bookwormpackage

Примечания

  • https://github.com/libexif/libexif/issues/247

  • Fixed by: https://github.com/libexif/libexif/commit/7df372e9d31d7c993a22b913c813a5f7ec4f3692

EPSS

Процентиль: 9%
0.00193
Низкий

Связанные уязвимости

CVSS3: 7.4
ubuntu
5 месяцев назад

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

CVSS3: 5.3
redhat
5 месяцев назад

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

CVSS3: 7.4
nvd
5 месяцев назад

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

CVSS3: 7.4
msrc
5 месяцев назад

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

CVSS3: 7.8
redos
20 дней назад

Уязвимость libexif

EPSS

Процентиль: 9%
0.00193
Низкий