Oval Definition:oval:org.mitre.oval:def:21778
Revision Date:2014-05-26Version:13
Title:ELSA-2007:0501: libexif integer overflow (Moderate)
Description:Integer overflow in the exif_data_load_data_entry function in libexif/exif-data.c in Libexif before 0.6.16 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via an image with many EXIF components, which triggers a heap-based buffer overflow.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2006-4168
ELSA-2007:0501-02
Platform(s):Oracle Linux 5
Product(s):libexif
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • libexif-devel is earlier than 0:0.6.13-4.0.2.el5
  • OR libexif is earlier than 0:0.6.13-4.0.2.el5
  • BACK