CVE-2019-9278

Priority
Description
In libexif, there is a possible out of bounds write due to an integer
overflow. This could lead to remote escalation of privilege in the media
content provider with no additional execution privileges needed. User
interaction is needed for exploitation. Product: AndroidVersions:
Android-10Android ID: A-112537774
Assigned-to
leosilva
Notes
Package
Upstream:needs-triage
Ubuntu 18.04 LTS:released (0.6.21-4ubuntu0.1)
Ubuntu 16.04 ESM:released (0.6.21-2ubuntu0.1)
Ubuntu 14.04 ESM:released (0.6.21-1ubuntu1+esm1)
Patches:
Vendor:https://android.googlesource.com/platform/external/libexif/+/a5e8e5812a11ec9686294de8a5d68aaf2ab72475
Upstream:https://github.com/libexif/libexif/commit/75aa73267fdb1e0ebfbc00369e7312bac43d0566
More Information

Updated: 2022-04-13 14:01:23 UTC (commit f411bd370d482ef4385c4e751d121a4055fbc009)