CVE-2020-0198 log

Severity Low
Remote Yes
Type Denial of service
In libexif before version 0.6.23, in exif_data_load_data_content of exif-data.c, there is a possible UBSAN abort due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation.
Group Package Affected Fixed Severity Status Ticket
AVG-2376 libexif 0.6.22-1 0.6.23-1 Medium Fixed