LWN.net Logo

libexif: integer overflow

Package(s):libexif CVE #(s):CVE-2007-4168 CVE-2006-4168
Created:June 15, 2007 Updated:July 3, 2007
Description: An integer overflow flaw was found in the way libexif parses EXIF image tags. If a victim opens a carefully crafted EXIF image file it could cause the application linked against libexif to execute arbitrary code or crash.
Alerts:
SuSE SUSE-SA:2007:039 2007-07-03
Fedora FEDORA-2007-614 2007-06-27
Ubuntu USN-478-1 2007-06-26
Gentoo 200706-09 2007-06-26
Fedora FEDORA-2007-605 2007-06-25
rPath rPSA-2007-0131-1 2007-06-25
Foresight FLEA-2007-0028-1 2007-06-22
Mandriva MDKSA-2007:128 2007-06-19
Debian DSA-1310-1 2007-06-16
Red Hat RHSA-2007:0501-01 2007-06-14

(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds