Fedora update for libexif
Secunia Advisory: SA28195
Release Date: 2007-12-21
Popularity: 4,586 views

Critical:
Moderately critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:Fedora 7
Fedora 8

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-6351
CVE-2007-6352


Description:
Fedora has issued an update for libexif. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.

For more information:
SA28076

Solution:
Apply updated packages.

-- Fedora 7 --

e7733fd2661f4f549adafab267822913504f3dc7 libexif-devel-0.6.15-3.fc7.ppc64.rpm
2c9c7a4987c59912ba55c3a3b9daf89703e7dfd0 libexif-debuginfo-0.6.15-3.fc7.ppc64.rpm
69f9d6c8f7c1c57d00aee64f55142a9b2b5011f0 libexif-0.6.15-3.fc7.ppc64.rpm
7085503bdabd318f4f41d7e487862dc6ddfbd675 libexif-debuginfo-0.6.15-3.fc7.i386.rpm
0b9bf4180cd261193a6b8fe0c5828170a70796f9 libexif-devel-0.6.15-3.fc7.i386.rpm
f27059abddcea4b1e078dfaba54827a38907b7ba libexif-0.6.15-3.fc7.i386.rpm
bd07367a759d0f0ee6ed673a1a09671f54bd22c8 libexif-debuginfo-0.6.15-3.fc7.x86_64.rpm
d5f82d2004ab721af6ed79afbef240c38de026c7 libexif-devel-0.6.15-3.fc7.x86_64.rpm
abc447c1074a13b17800875f6b383e88b0bdb701 libexif-0.6.15-3.fc7.x86_64.rpm
ac21346bf1f78e3fa9c71701baa045496ab88d7d libexif-devel-0.6.15-3.fc7.ppc.rpm
61619a1bcd595eac71247c3361eca3cd6637881e libexif-0.6.15-3.fc7.ppc.rpm
1f85152b36620d81dba1fbd1334740b12d42517d libexif-debuginfo-0.6.15-3.fc7.ppc.rpm
5652e6461035a065e8e89f5cdcffa3df0e1bf59f libexif-0.6.15-3.fc7.src.rpm

-- Fedora 8 --

852d54047ba586d62486818245bd18ac7b9c291a libexif-devel-0.6.15-5.fc8.ppc64.rpm
e15c3d7b5426eaa4bf3e46aa4fae592629ae9e59 libexif-0.6.15-5.fc8.ppc64.rpm
4daedaa0ec9e9328b98ada468599728748a82c1f libexif-debuginfo-0.6.15-5.fc8.ppc64.rpm
3b7cf7c8be953825a10c09a784e7c7f14d974bfe libexif-0.6.15-5.fc8.i386.rpm
5daaae00ff5543f069197951eaff7aa27154e611 libexif-devel-0.6.15-5.fc8.i386.rpm
ffdb148b9829b04f1b0035491922c1439e68ace1 libexif-debuginfo-0.6.15-5.fc8.i386.rpm
9ff1fab36fc1fcc6e4d2c328c3df5bf6d3ffb674 libexif-debuginfo-0.6.15-5.fc8.x86_64.rpm
6de81cf76765f8e31c6673ac3e1bb8e57c62ff99 libexif-devel-0.6.15-5.fc8.x86_64.rpm
e804aeb6e4538a23e2ef7b23aa7748859b1a05f8 libexif-0.6.15-5.fc8.x86_64.rpm
4fff7b0828ac226737e1378344d10ff79b02119c libexif-debuginfo-0.6.15-5.fc8.ppc.rpm
49eb0cfab1f30c27e08813ded09ec37b2c532b6d libexif-0.6.15-5.fc8.ppc.rpm
574766396e9792127a73ea7dd0a7ae46c54bc323 libexif-devel-0.6.15-5.fc8.ppc.rpm
84810840b80dbb55416643a9882837cb82f90c5c libexif-0.6.15-5.fc8.src.rpm

Original Advisory:
https://www.redhat.com/archives/fedor...-announce/2007-December/msg00597.html
https://www.redhat.com/archives/fedor...-announce/2007-December/msg00626.html

Other References:
SA28076:
http://secunia.com/advisories/28076/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Sun Java JDK / JRE Multiple Vulnerabilities // 45 views
2. 3Com Wireless 8760 Access Point HTTP Request Processing Denial of Service // 34 views
3. Zeroboard Two Vulnerabilities // 31 views
4. VLC Media Player Multiple Vulnerabilities // 29 views
5. Zeroboard Multiple Vulnerabilities // 28 views
6. Drupal Content Construction Kit Script Insertion Vulnerabilities // 26 views
7. Cisco ASA and PIX Security Appliances Multiple Vulnerabilities // 26 views
8. Cisco Secure ACS EAP Packet Denial of Service // 26 views
9. Opera Multiple Vulnerabilities // 23 views
10. ClamAV CHM Processing Denial of Service // 22 views