Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-2841

Опубликовано: 13 июл. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

Integer underflow in the exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 might allow remote attackers to execute arbitrary code via vectors involving a crafted buffer-size parameter during the formatting of an EXIF tag, leading to a heap-based buffer overflow.

РелизСтатусПримечание
devel

not-affected

0.6.20-3
hardy

released

0.6.16-2.1ubuntu0.2
lucid

released

0.6.19-1ubuntu0.1
natty

released

0.6.20-0ubuntu1.1
oneiric

released

0.6.20-1ubuntu0.1
precise

released

0.6.20-2ubuntu0.1
upstream

released

0.6.20-3,0.6.21

Показывать по

EPSS

Процентиль: 90%
0.05429
Низкий

7.5 High

CVSS2

Связанные уязвимости

redhat
около 13 лет назад

Integer underflow in the exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 might allow remote attackers to execute arbitrary code via vectors involving a crafted buffer-size parameter during the formatting of an EXIF tag, leading to a heap-based buffer overflow.

nvd
около 13 лет назад

Integer underflow in the exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 might allow remote attackers to execute arbitrary code via vectors involving a crafted buffer-size parameter during the formatting of an EXIF tag, leading to a heap-based buffer overflow.

debian
около 13 лет назад

Integer underflow in the exif_entry_get_value function in exif-entry.c ...

github
больше 3 лет назад

Integer underflow in the exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 might allow remote attackers to execute arbitrary code via vectors involving a crafted buffer-size parameter during the formatting of an EXIF tag, leading to a heap-based buffer overflow.

fstec
больше 10 лет назад

Уязвимости операционной системы SUSE Linux Enterprise, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 90%
0.05429
Низкий

7.5 High

CVSS2