5

CVE-2012-2837

The mnote_olympus_entry_get_value function in olympus/mnote-olympus-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote attackers to cause a denial of service (divide-by-zero error) via an image with crafted EXIF tags that are not properly handled during the formatting of EXIF maker note tags.

Data is provided by the National Vulnerability Database (NVD)
Libexif ProjectLibexif Version <= 0.6.20
Libexif ProjectLibexif Version0.6.14
Libexif ProjectLibexif Version0.6.15
Libexif ProjectLibexif Version0.6.16
Libexif ProjectLibexif Version0.6.18
Libexif ProjectLibexif Version0.6.19
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.26% 0.775
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P