Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-32775

Опубликовано: 16 мар. 2026
Источник: redhat
CVSS3: 5.3

Описание

A flaw was found in libexif. When decoding MakerNotes, an integer underflow can occur in the exif_mnote_data_get_value function if a zero size is passed. This can lead to a buffer overwrite, potentially allowing an attacker to achieve arbitrary code execution, disclose sensitive information, or cause a denial of service (DoS).

Меры по смягчению последствий

To mitigate this issue, avoid processing untrusted image files that may contain specially crafted EXIF MakerNotes. Restrict the use of applications that process EXIF data to trusted sources only.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10libexifFix deferred
Red Hat Enterprise Linux 6libexifFix deferred
Red Hat Enterprise Linux 7libexifFix deferred
Red Hat Enterprise Linux 8libexifFix deferred
Red Hat Enterprise Linux 9libexifFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-191
https://bugzilla.redhat.com/show_bug.cgi?id=2447881libexif: libexif: Buffer overwrite via integer underflow in MakerNotes decoding

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.4
ubuntu
10 дней назад

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

CVSS3: 7.4
nvd
10 дней назад

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

CVSS3: 7.4
msrc
10 дней назад

Описание отсутствует

CVSS3: 7.4
debian
10 дней назад

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_ ...

CVSS3: 7.4
github
10 дней назад

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

5.3 Medium

CVSS3