CVE-2007-6352
Publication date 20 December 2007
Last updated 24 July 2024
Ubuntu priority
Integer overflow in libexif 0.6.16 and earlier allows context-dependent attackers to execute arbitrary code via an image with crafted EXIF tags, possibly involving the exif_data_load_data_thumbnail function in exif-data.c.
Status
Package | Ubuntu Release | Status |
---|---|---|
libexif | 8.04 LTS hardy |
Not affected
|
7.10 gutsy |
Fixed 0.6.16-1ubuntu0.1
|
|
7.04 feisty |
Fixed 0.6.13-5ubuntu0.3
|
|
6.10 edgy | Ignored end of life | |
6.06 LTS dapper |
Fixed 0.6.12-2ubuntu0.3
|
Patch details
Package | Patch details |
---|---|
libexif |