Cybertrion Systems

[3/5] exiftags Multiple Vulnerabilities

December 17th, 2007 by
[3/5] exiftags Multiple Vulnerabilities

:Some vulnerabilities have been reported in exiftags, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.The vulnerabilities are caused due to errors when processing Exif data and can be exploited to cause an infinite loop or buffer overflows.Successful exploitation may allow execution of arbitrary code.The vulnerabilities are reported in versions prior to 1.01. Other applications that use the vulnerable application may also be affected.Solution:Update to version 1.01.Provided and/or discovered by:The vendor credits:* Christian Schmid* Meder Kydyraliev, Google Security TeamOriginal Advisory:http://johnst.org/sw/exiftags/CHANGES

Original post by kapil

[3/5] exiftags Multiple Vulnerabilities

Related Articles:
  • [3/5] Gentoo update for exiftags
  • [3/5] Debian update for exiftags
  • [4/5] Sun Solaris Mozilla 1.7 Multiple Vulnerabilities
  • [3/5] CA BrightStor Hierarchical Storage Manager CsAgent Vulnerabilities
  • [3/5] Roundup Multiple Vulnerabilities


  • Posted in Advisories - Exploits | | [3/5] exiftags Multiple Vulnerabilities

    << [3/5] phPay Local File Inclusion Vulnerability | [3/5] Debian update for centericq >>