ISOMAN

CVE

CVE-2020-13114

An issue was discovered in libexif before 0.6.22. An unrestricted size in handling Canon EXIF MakerNote data could lead to consumption of large amounts of compute time for decoding EXIF data.

Severity
HIGH
CVSS
7.5
Published
Modified

Linked Releases

References

  1. http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.html
  2. https://github.com/libexif/libexif/commit/e6a38a1a23ba94d139b1fa2cd4519fdcfe3c9bab
  3. https://lists.debian.org/debian-lts-announce/2020/05/msg00025.html
  4. https://security.gentoo.org/glsa/202007-05
  5. https://usn.ubuntu.com/4396-1/
  6. http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.html
  7. https://github.com/libexif/libexif/commit/e6a38a1a23ba94d139b1fa2cd4519fdcfe3c9bab
  8. https://lists.debian.org/debian-lts-announce/2020/05/msg00025.html
  9. https://security.gentoo.org/glsa/202007-05
  10. https://usn.ubuntu.com/4396-1/