CVE-2007-6352
libexif integer overflow
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Integer overflow in libexif 0.6.16 and earlier allows context-dependent attackers to execute arbitrary code via an image with crafted EXIF tags, possibly involving the exif_data_load_data_thumbnail function in exif-data.c.
Un desbordamiento de enteros en libexif versión 0.6.16 y anteriores, permite a los atacantes dependiendo del contexto ejecutar código arbitrario por medio de una imagen con etiquetas EXIF especialmente diseñadas, lo que posiblemente involucra la función exif_data_load_data_thumbnail en el archivo exif-data.c.
An infinite recursion flaw was found in the way that libexif parses Exif image tags. A carefully crafted Exif image file opened by an application linked against libexif could cause the application to crash. An integer overflow flaw was also found in how libexif parses Exif image tags. A carefully crafted Exif image file opened by an application linked against libexif could cause the application to crash or execute arbitrary code with the privileges of the user executing the application.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2007-12-14 CVE Reserved
- 2007-12-20 CVE Published
- 2024-08-07 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-189: Numeric Errors
- CWE-190: Integer Overflow or Wraparound
CAPEC
References (35)
URL | Tag | Source |
---|---|---|
http://bugs.gentoo.org/show_bug.cgi?id=202350 | X_refsource_confirm | |
http://osvdb.org/42653 | Vdb Entry | |
http://www.securityfocus.com/archive/1/485822/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/26942 | Vdb Entry | |
http://www.securitytracker.com/id?1019124 | Vdb Entry | |
https://bugzilla.redhat.com/show_bug.cgi?id=425621 | X_refsource_confirm | |
https://bugzilla.redhat.com/show_bug.cgi?id=425631 | X_refsource_confirm | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/39167 | Vdb Entry | |
https://issues.rpath.com/browse/RPL-2068 | X_refsource_confirm | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11029 | Signature | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4814 | Signature |
URL | Date | SRC |
---|
URL | Date | SRC |
---|