Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libexif HIGH 7.1
CVE-2026-40385

In libexif through 0.6.25, an unsigned 32bit integer overflow in Nikon MakerNote handling could be used by local attackers to cause crashes or inform…

Fix: after 0.6.25
Fix from $1,950 2026-04-12
Libexif HIGH 7.1
CVE-2026-40386

In libexif through 0.6.25, an integer underflow in size checking for Fuji and Olympus MakerNote decoding could be used by attackers to crash or leak …

Fix: after 0.6.25
Fix from $1,950 2026-04-12
Libexif HIGH 7.8
CVE-2026-32775

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer wou…

Fix: after 0.6.25
Fix from $1,950 2026-03-16
Libexif HIGH 7.5
CVE-2018-20030

An error when processing the EXIF_IFD_INTEROPERABILITY and EXIF_IFD_EXIF tags within libexif version 0.6.21 can be exploited to exhaust available CPU…

Patch available
Fix from $1,950 2019-02-20
Libexif CRITICAL 9.1
CVE-2017-7544

libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exif_data_save_data_entry function in libexif/exif-data.c caused by …

Fix: after 0.6.21
Fix from $2,300 2017-09-21
Libexif HIGH 7.5
CVE-2012-2814EPSS 8%

Buffer overflow in the exif_entry_format_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 allows remote attackers …

Mitigation only
Fix from $1,950 2012-07-13
Libexif HIGH 7.5
CVE-2012-2840EPSS 5%

Off-by-one error in the exif_convert_utf16_to_utf8 function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote…

Fix: after 0.6.20
Fix from $1,950 2012-07-13
Libexif HIGH 7.5
CVE-2012-2841EPSS 6%

Integer underflow in the exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 might allow remote attack…

Mitigation only
Fix from $1,950 2012-07-13
Libexif MEDIUM 6.4
CVE-2012-2812

The exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote attackers to cause a deni…

Fix: after 0.6.20
Fix from $1,600 2012-07-13
Libexif MEDIUM 6.4
CVE-2012-2813

The exif_convert_utf16_to_utf8 function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote attackers to cause …

Fix: after 0.6.20
Fix from $1,600 2012-07-13
Libexif MEDIUM 6.4
CVE-2012-2836EPSS 6%

The exif_data_load_data function in exif-data.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote attackers to cause a denial…

Fix: after 0.6.20
Fix from $1,600 2012-07-13
Libexif MEDIUM 5.0
CVE-2012-2837

The mnote_olympus_entry_get_value function in olympus/mnote-olympus-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote…

Fix: after 0.6.20
Fix from $1,600 2012-07-13
Libexif MEDIUM 6.8
CVE-2009-3895EPSS 5%

Heap-based buffer overflow in the exif_entry_fix function (aka the tag fixup routine) in libexif/exif-entry.c in libexif 0.6.18 allows remote attacke…

Patch available
Fix from $1,600 2009-11-20