CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
AI Score
Confidence
High
EPSS
Percentile
94.3%
exiftags before 1.01 allows attackers to cause a denial of service (infinite loop) via recursive IFD references in the EXIF data in a JPEG image.
Vendor | Product | Version | CPE |
---|---|---|---|
aertherwide | exiftags | * | cpe:2.3:a:aertherwide:exiftags:*:*:*:*:*:*:*:* |
bugs.gentoo.org/show_bug.cgi?id=202354
johnst.org/sw/exiftags/CHANGES
secunia.com/advisories/28110
secunia.com/advisories/28268
secunia.com/advisories/29580
security.gentoo.org/glsa/glsa-200712-17.xml
www.debian.org/security/2008/dsa-1533
www.securityfocus.com/bid/26892
www.vupen.com/english/advisories/2007/4251