Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-40341

Опубликовано: 18 апр. 2026
Источник: debian
EPSS Низкий

Описание

libgphoto2 is a camera access and control library. In versions up to and including 2.5.33, an out of bound read in ptp_unpack_EOS_FocusInfoEx could be used to crash libgphoto2 when processing input from untrusted USB devices. Commit c385b34af260595dfbb5f9329526be5158985987 contains a patch. No known workarounds are available.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libgphoto2unfixedpackage
libgphoto2no-dsatrixiepackage
libgphoto2no-dsabookwormpackage
libgphoto2postponedbullseyepackage

Примечания

  • https://github.com/gphoto/libgphoto2/security/advisories/GHSA-vjx3-gjp6-r2g2

  • Fixed by: https://github.com/gphoto/libgphoto2/commit/c385b34af260595dfbb5f9329526be5158985987

EPSS

Процентиль: 8%
0.00187
Низкий

Связанные уязвимости

CVSS3: 3.5
ubuntu
4 месяца назад

libgphoto2 is a camera access and control library. In versions up to and including 2.5.33, an out of bound read in ptp_unpack_EOS_FocusInfoEx could be used to crash libgphoto2 when processing input from untrusted USB devices. Commit c385b34af260595dfbb5f9329526be5158985987 contains a patch. No known workarounds are available.

CVSS3: 4.6
redhat
4 месяца назад

libgphoto2 is a camera access and control library. In versions up to and including 2.5.33, an out of bound read in ptp_unpack_EOS_FocusInfoEx could be used to crash libgphoto2 when processing input from untrusted USB devices. Commit c385b34af260595dfbb5f9329526be5158985987 contains a patch. No known workarounds are available.

CVSS3: 3.5
nvd
4 месяца назад

libgphoto2 is a camera access and control library. In versions up to and including 2.5.33, an out of bound read in ptp_unpack_EOS_FocusInfoEx could be used to crash libgphoto2 when processing input from untrusted USB devices. Commit c385b34af260595dfbb5f9329526be5158985987 contains a patch. No known workarounds are available.

EPSS

Процентиль: 8%
0.00187
Низкий