Описание
A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS) and Information Disclosure (disclosing some critical heap chunk metadata, even other applications' private data).
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 0.6.21-4 |
| cosmic | ignored | end of life |
| devel | not-affected | 0.6.21-5.1 |
| disco | not-affected | 0.6.21-5.1 |
| eoan | not-affected | 0.6.21-5.1 |
| esm-infra-legacy/trusty | released | 0.6.21-1ubuntu1+esm1 |
| esm-infra/bionic | not-affected | 0.6.21-4 |
| esm-infra/xenial | released | 0.6.21-2ubuntu0.1 |
| precise/esm | not-affected | 0.6.20-2ubuntu0.2 |
Показывать по
5.8 Medium
CVSS2
8.1 High
CVSS3
Связанные уязвимости
A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS) and Information Disclosure (disclosing some critical heap chunk metadata, even other applications' private data).
A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS) and Information Disclosure (disclosing some critical heap chunk metadata, even other applications' private data).
A vulnerability was found in libexif. An integer overflow when parsing ...
A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS) and Information Disclosure (disclosing some critical heap chunk metadata, even other applications' private data).
Уязвимость библиотеки для грамматического разбора EXIF-файлов libexif, связанная с целочисленным переполнением, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
5.8 Medium
CVSS2
8.1 High
CVSS3