Vulnerabilities > CVE-2021-28276 - Unspecified vulnerability in Jhead Project Jhead 3.04/3.05

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
jhead-project

Summary

A Denial of Service vulnerability exists in jhead 3.04 and 3.05 via a wild address read in the ProcessCanonMakerNoteDir function in makernote.c.

Vulnerable Configurations

Part Description Count
Application
Jhead_Project
2