Vulnerabilities > Libexif Project > Libexif
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-06-11 | CVE-2020-0198 | Integer Overflow or Wraparound vulnerability in multiple products In exif_data_load_data_content of exif-data.c, there is a possible UBSAN abort due to an integer overflow. | 7.5 |
2020-06-11 | CVE-2020-0181 | Integer Overflow or Wraparound vulnerability in multiple products In exif_data_load_data_thumbnail of exif-data.c, there is a possible denial of service due to an integer overflow. | 7.5 |
2020-05-21 | CVE-2020-13113 | Use of Uninitialized Resource vulnerability in multiple products An issue was discovered in libexif before 0.6.22. | 8.2 |
2020-05-21 | CVE-2020-13114 | Allocation of Resources Without Limits or Throttling vulnerability in multiple products An issue was discovered in libexif before 0.6.22. | 7.5 |
2020-05-21 | CVE-2020-13112 | Out-of-bounds Read vulnerability in multiple products An issue was discovered in libexif before 0.6.22. | 9.1 |
2020-05-14 | CVE-2020-0093 | Out-of-bounds Read vulnerability in multiple products In exif_data_save_data_entry of exif-data.c, there is a possible out of bounds read due to a missing bounds check. | 5.0 |
2020-05-09 | CVE-2020-12767 | Divide By Zero vulnerability in multiple products exif_entry_get_value in exif-entry.c in libexif 0.6.21 has a divide-by-zero error. | 5.5 |
2019-02-20 | CVE-2018-20030 | Resource Exhaustion vulnerability in Libexif Project Libexif 0.6.21 An error when processing the EXIF_IFD_INTEROPERABILITY and EXIF_IFD_EXIF tags within libexif version 0.6.21 can be exploited to exhaust available CPU resources. | 7.5 |
2018-10-31 | CVE-2016-6328 | A vulnerability was found in libexif. | 8.1 |
2017-09-21 | CVE-2017-7544 | Out-of-bounds Read vulnerability in Libexif Project Libexif libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure. | 9.1 |