Vulnerabilities (CVE)

Filtered by vendor Libexif Project Subscribe
Filtered by product Libexif
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-3895 1 Libexif Project 1 Libexif 2026-06-16 6.8 MEDIUM N/A
Heap-based buffer overflow in the exif_entry_fix function (aka the tag fixup routine) in libexif/exif-entry.c in libexif 0.6.18 allows remote attackers to cause a denial of service or possibly execute arbitrary code via an invalid EXIF image. NOTE: some of these details are obtained from third party information.
CVE-2007-6351 1 Libexif Project 1 Libexif 2026-06-16 4.3 MEDIUM N/A
libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial of service (infinite recursion) via an image file with crafted EXIF tags, possibly involving the exif_loader_write function in exif_loader.c.