Description
libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2214-1 | libexif security update |
EUVD |
EUVD-2017-16555 | libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure. |
Ubuntu USN |
USN-4277-1 | libexif vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T16:04:12.004Z
Reserved: 2017-04-05T00:00:00.000Z
Link: CVE-2017-7544
No data.
Status : Modified
Published: 2017-09-21T21:29:00.400
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-7544
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN