Libexif Project / Libexif
26 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-40386 | libexif: libexif: Denial of Service and information disclosure via integer underflow in MakerNote decoding | HIGH | 7.1 | Apr 12, 2026 |
| CVE-2026-40385 | libexif: libexif: Information disclosure and crashes via integer overflow in Nikon MakerNote handling | HIGH | 7.1 | Apr 12, 2026 |
| CVE-2026-32775 | libexif: libexif: Buffer overwrite via integer underflow in MakerNotes decoding | HIGH | 7.8 | Mar 16, 2026 |
| CVE-2020-0198 | libexif: integer overflow in exif_data_load_data_content function in exif-data.c | HIGH | 7.5 | Jun 11, 2020 |
| CVE-2020-0181 | libexif: integer overflow in exif_data_load_data_thumbnail function in exif-data.c | HIGH | 8.2 | Jun 11, 2020 |
| CVE-2020-13113 | libexif: use of uninitialized memory in EXIF Makernote handling can lead to crashes and use-after-free | HIGH | 8.2 | May 21, 2020 |
| CVE-2020-13112 | libexif: several buffer over-reads in EXIF MakerNote handling can lead to information disclosure and DoS | CRITICAL | 9.1 | May 21, 2020 |
| CVE-2020-13114 | libexif: unrestricted size in handling Canon EXIF MakerNote data can lead to consumption of large amounts of compute time | HIGH | 7.5 | May 21, 2020 |
| CVE-2020-0093 | libexif: out of bounds read due to a missing bounds check in exif_data_save_data_entry function in exif-data.c | MEDIUM | 5.0 | May 14, 2020 |
| CVE-2020-12767 | libexif: divide-by-zero in exif_entry_get_value function in exif-entry.c | MEDIUM | 6.2 | May 9, 2020 |
| CVE-2018-20030 | libexif: Input validation issue resulting in a denial of service | HIGH | 7.5 | Feb 20, 2019 |
| CVE-2016-6328 | libexif: Integer overflow in parsing MNOTE entry data of the input file | HIGH | 8.1 | Oct 31, 2018 |
| CVE-2017-7544 | libexif: Out-of-bounds heap read in exif_data_save_data_entry function | CRITICAL | 9.1 | Sep 21, 2017 |
| CVE-2012-2841 | libexif: "exif_entry_get_value()" integer underflow | HIGH | 7.5 | Jul 13, 2012 |
| CVE-2012-2840 | libexif: "exif_convert_utf16_to_utf8()" off-by-one | HIGH | 7.5 | Jul 13, 2012 |
| CVE-2012-2837 | libexif: "mnote_olympus_entry_get_value()" division by zero | MEDIUM | 5.0 | Jul 13, 2012 |
| CVE-2012-2836 | libexif: "exif_data_load_data()" heap-based out-of-bounds array read | MEDIUM | 6.4 | Jul 13, 2012 |
| CVE-2012-2814 | libexif: "exif_entry_format_value()" buffer overflow | HIGH | 7.5 | Jul 13, 2012 |
| CVE-2012-2813 | libexif: "exif_convert_utf16_to_utf8()" heap-based out-of-bounds array read | MEDIUM | 6.4 | Jul 13, 2012 |
| CVE-2012-2812 | libexif: "exif_entry_get_value()" heap-based out-of-bounds array read | MEDIUM | 6.4 | Jul 13, 2012 |
| CVE-2009-3895 | Heap-based buffer overflow in the exif_entry_fix function (aka the tag fixup routine) in libexif/exif-entry.c in libexif 0.6.18 allows remote attackers to caus… | MEDIUM | 6.8 | Nov 20, 2009 |
| CVE-2007-6352 | libexif integer overflow | MEDIUM | 6.8 | Dec 20, 2007 |
| CVE-2007-6351 | libexif infinite recursion flaw (DoS) | MEDIUM | 4.3 | Dec 20, 2007 |
| CVE-2006-4168 | libexif integer overflow | MEDIUM | 6.8 | Jun 14, 2007 |
| CVE-2007-2645 | Interger overflow in libexif | HIGH | 9.3 | May 14, 2007 |
Showing 1 to 25 of 26 CVEs