2.6
CVSSv2

CVE-2005-0664

Published: 02/05/2005 Updated: 03/10/2018
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflow in the EXIF library (libexif) 0.6.9 does not properly validate the structure of the EXIF tags, which allows remote malicious users to cause a denial of service (application crash) and possibly execute arbitrary code via a JPEG image with a crafted EXIF tag.

Vulnerable Product Search on Vulmon Subscribe to Product

libexif libexif 0.6.9

Vendor Advisories

Synopsis libexif security update Type/Severity Security Advisory: Low Topic Updated libexif packages that fix a buffer overflow issue are now availableThis update has been rated as having low security impact by the Red HatSecurity Response Team Description The libexif package contains the ...
Sylvain Defresne discovered a buffer overflow in libexif, a library that parses EXIF files (such as JPEG files with extra tags) This bug could be exploited to crash the application and maybe to execute arbitrary code as well For the stable distribution (woody) this problem has been fixed in version 050-1woody1 For the unstable distribution (si ...