CVE-2008-2696
Publication date 13 June 2008
Last updated 24 July 2024
Ubuntu priority
Exiv2 0.16 allows user-assisted remote attackers to cause a denial of service (divide-by-zero and application crash) via a zero value in Nikon lens information in the metadata of an image, related to “pretty printing” and the RationalValue::toLong function.
Status
Package | Ubuntu Release | Status |
---|---|---|
exiv2 | 9.10 karmic |
Not affected
|
9.04 jaunty |
Not affected
|
|
8.10 intrepid |
Not affected
|
|
8.04 LTS hardy |
Fixed 0.16-3ubuntu1.1
|
|
7.10 gutsy |
Fixed 0.15-1ubuntu2.1
|
|
7.04 feisty |
Fixed 0.12-0ubuntu2.1
|
|
6.06 LTS dapper | Ignored end of life |
Patch details
Package | Patch details |
---|---|
exiv2 |