Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2005-0664
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-0664

Description:
Buffer overflow in the EXIF library (libexif) 0.6.9 does not properly validate the structure of the EXIF tags, which allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a JPEG image with a crafted EXIF tag.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntulinux.org/support/documentation/usn/usn-91-1

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-102041-1

ST
  1013398

SAID
  Secunia Advisory: SA17705

REDHAT
  http://www.redhat.com/support/errata/RHSA-2005-300.html

MISC

MANDRAKE
  http://www.mandrakesoft.com/security/advisories?name=MDKSA-2005:064

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200503-17.xml

DEBIAN
  http://www.debian.org/security/2005/dsa-709


Return to the previous page.