libexif-0.6.22-2.el7
エラータID: AXSA:2020-987:05
The libexif packages provide a library for extracting extra information from image files.
Security Fix(es):
* libexif: out of bounds write due to an integer overflow in exif-entry.c (CVE-2020-0452)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2020-0452
In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution if a third party app used this library to process remote image data with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11 Android-8.0Android ID: A-159625731
Update packages.
In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution if a third party app used this library to process remote image data with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11 Android-8.0Android ID: A-159625731
N/A
SRPMS
- libexif-0.6.22-2.el7.src.rpm
MD5: eedac712ba6e0be5782451c9598c046f
SHA-256: 32366a7b05348b6982b726a42d5338588b88fd76d8c4c3a18903e131adf444c2
Size: 1.07 MB
Asianux Server 7 for x86_64
- libexif-0.6.22-2.el7.x86_64.rpm
MD5: 33f30ca9cb95bfc908e7155a02b8b14c
SHA-256: 862bbe6fa6d15bc4e1426cdd49de06562b503d9416d693a14677f96d37181f7a
Size: 422.01 kB - libexif-0.6.22-2.el7.i686.rpm
MD5: 4354d6d06cf9b37c3db674db523200f2
SHA-256: 602c102ae46edaa17baaf7f2fcdf72b1510c5bad268b9e7e020e4892f452485f
Size: 418.42 kB