Related Vulnerabilities: CVE-2021-3496  

A heap-based buffer overflow was found in jhead in version 3.06 in Get16u() in exif.c when processing a crafted file.

Severity Medium

Remote No

Type Arbitrary code execution

Description

A heap-based buffer overflow was found in jhead in version 3.06 in Get16u() in exif.c when processing a crafted file.

AVG-1815 jhead 3.04-1 Medium Vulnerable

https://bugzilla.redhat.com/show_bug.cgi?id=1949245
https://github.com/Matthias-Wandel/jhead/issues/33
https://github.com/Matthias-Wandel/jhead/files/6300939/jhead_poc.zip