Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-7544

Опубликовано: 04 июл. 2017
Источник: redhat
CVSS3: 3.3
EPSS Низкий

Описание

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5libexifWill not fix
Red Hat Enterprise Linux 6libexifWill not fix
Red Hat Enterprise Linux 7libexifWill not fix

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1494196libexif: Out-of-bounds heap read in exif_data_save_data_entry function

EPSS

Процентиль: 62%
0.00436
Низкий

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 8 лет назад

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.

CVSS3: 9.1
nvd
больше 8 лет назад

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.

CVSS3: 9.1
debian
больше 8 лет назад

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulner ...

suse-cvrf
около 8 лет назад

Security update for libexif

CVSS3: 9.1
github
больше 3 лет назад

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.

EPSS

Процентиль: 62%
0.00436
Низкий

3.3 Low

CVSS3