Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Mageia 7 And 8: MGASA-2021-0252 Critical Exif DoS Advisory

mageia
Calendar Grey June 13, 2021
Dist Mageia Esm H88
MGASA-2021-0253 tackles an issue with jpegtran; a critical update for Mageia 7 and 8 to mitigate vulnerabilities.
NULL Pointer Deference in the exif command line tool, when printing out XML formatted EXIF data, in exif v0.6.22 and earlier allows attackers to cause a Denial of Service (DoS) by ...

Summary

NULL Pointer Deference in the exif command line tool, when printing out XML formatted EXIF data, in exif v0.6.22 and earlier allows attackers to cause a Denial of Service (DoS) by uploading a malicious JPEG file, causing the application to crash. (CVE-2021-27815).

References

- https://bugs.mageia.org/show_bug.cgi?id=29038

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/QMC6OTXZRPCUD3LOSWO4ISR7CH7NJQDT/

- https://www.cve.org/CVERecord?id=CVE-2021-27815

Resolution

SRPMS

- 7/core/exif-0.6.22-1.1.mga7

- 8/core/exif-0.6.22-1.1.mga8

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 13 Jun 2021
URL: https://advisories.mageia.org/MGASA-2021-0252.html
Type: security
CVE: CVE-2021-27815

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here