CVE-2017-7544 log

Source
Severity High
Remote No
Type Information disclosure
Description
libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.
Group Package Affected Fixed Severity Status Ticket
AVG-1166 libexif 0.6.21-1 0.6.22-1 High Fixed
References
https://github.com/libexif/libexif/commit/c39acd1692023b26290778a02a9232c873f9d71a
https://sourceforge.net/p/libexif/bugs/130/