ISOMAN

CVE

CVE-2016-6328

A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS) and Information Disclosure (disclosing some critical heap chunk metadata, even other applications' private data).

Severity
HIGH
CVSS
8.1
Published
Modified

Linked Releases

DistributionReleaseStatusEvidence
Ubuntu18.04.6 amd64 desktopunknownsource
Ubuntu18.04.6 amd64 live-serverunknownsource

References

  1. http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.html
  2. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-6328
  3. https://lists.debian.org/debian-lts-announce/2020/05/msg00016.html
  4. https://security.gentoo.org/glsa/202007-05
  5. https://usn.ubuntu.com/4277-1/
  6. http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.html
  7. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-6328
  8. https://lists.debian.org/debian-lts-announce/2020/05/msg00016.html
  9. https://security.gentoo.org/glsa/202007-05
  10. https://usn.ubuntu.com/4277-1/