Описание
libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 0.6.26-1 |
| esm-infra-legacy/trusty | needed | |
| esm-infra-legacy/xenial | needed | |
| esm-infra/bionic | needed | |
| esm-infra/focal | needed | |
| esm-infra/xenial | ignored | end of ESM support, was needed |
| jammy | released | 0.6.24-1ubuntu0.22.04.1 |
| noble | released | 0.6.24-1ubuntu0.24.04.1 |
| questing | ignored | end of life, was needed |
| resolute | released | 0.6.25-2ubuntu0.1 |
Показывать по
EPSS
7.4 High
CVSS3
Связанные уязвимости
libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.
libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.
libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.
libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_ ...
EPSS
7.4 High
CVSS3