Vulnerabilities (CVE)

Filtered by vendor Libexif Project Subscribe
Filtered by product Libexif
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-13112 1 Libexif Project 1 Libexif 2020-07-27 6.4 MEDIUM 9.1 CRITICAL
An issue was discovered in libexif before 0.6.22. Several buffer over-reads in EXIF MakerNote handling could lead to information disclosure and crashes. This is different from CVE-2020-0093.
CVE-2017-7544 1 Libexif Project 1 Libexif 2020-06-11 6.4 MEDIUM 9.1 CRITICAL
libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.