Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2021-34055
HistoryNov 04, 2022 - 5:15 p.m.

CVE-2021-34055

2022-11-0417:15:10
Debian Security Bug Tracker
security-tracker.debian.org
21
jhead vulnerability
buffer overflow
put16u function
exif.c
unix

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

33.1%

jhead 3.06 is vulnerable to Buffer Overflow via exif.c in function Put16u.

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

33.1%