libexif: out of bounds write in exif-data.c
Published Sep 27, 2019
8.8
HIGHCVSS 3.1
EPSS 4.06%
Description
In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112537774
Affected products
- Vendor n/a Product Android Defaultn/a
- Version Android-10StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | Android | n/a |
|
Configuration 3
- 31
- 32
Configuration 4
- 8.0
- 9.0
- 10.0
Configuration 5
- 12.04
- 14.04
- 16.04
- 18.04
- 19.10
No data.
Red Hat Enterprise Linux 7
libexif-0:0.6.22-1.el7
Fixed · RHSA-2020:4040
Red Hat Enterprise Linux 8
libexif-0:0.6.22-4.el8
Fixed · RHSA-2020:4766
Red Hat Enterprise Linux 5
libexif
Out of support scope
Red Hat Enterprise Linux 6
libexif
Out of support scope
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | libexif-0:0.6.22-1.el7 | Fixed | RHSA-2020:4040 |
| Red Hat Enterprise Linux 8 | libexif-0:0.6.22-4.el8 | Fixed | RHSA-2020:4766 |
| Red Hat Enterprise Linux 5 | libexif | Out of support scope | n/a |
| Red Hat Enterprise Linux 6 | libexif | Out of support scope | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (19)
- http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00000.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2019/10/25/17 mailing-listx_refsource_MLISTMailing List
- http://www.openwall.com/lists/oss-security/2019/10/27/1 mailing-listx_refsource_MLISTMailing List
- http://www.openwall.com/lists/oss-security/2019/11/07/1 mailing-listx_refsource_MLISTMailing List
- https://access.redhat.com/security/cve/CVE-2019-9278 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1789031 Issue Tracking
- https://github.com/libexif/libexif/commit/75aa73267fdb1e0ebfbc00369e7312bac43d0566 x_refsource_CONFIRMPatchThird Party Advisory
- https://github.com/libexif/libexif/issues/26 x_refsource_CONFIRMIssue TrackingPatchThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2020/02/msg00007.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MO2VTHD7OLPJDCJBHKUQTBAHZOBBCF6X/ vendor-advisoryx_refsource_FEDORA
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VA5BPQLOFXIZOOJHBYDU635Z5KLUMTDD/ vendor-advisoryx_refsource_FEDORA
- https://nvd.nist.gov/vuln/detail/CVE-2019-9278
- https://seclists.org/bugtraq/2020/Feb/9 mailing-listx_refsource_BUGTRAQMailing ListThird Party Advisory
- https://security.gentoo.org/glsa/202007-05 vendor-advisoryx_refsource_GENTOOThird Party Advisory
- https://source.android.com/security/bulletin/android-10 x_refsource_MISCVendor Advisory
- https://usn.ubuntu.com/4277-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2019-9278
- https://www.debian.org/security/2020/dsa-4618 vendor-advisoryx_refsource_DEBIANThird Party Advisory
Change history (0)
No recorded changes yet.