CVE-2020-13112

Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-13112.json
Aliases
Published
2020-05-21T16:15:00Z
Modified
2020-07-27T01:15:00Z
Details

An issue was discovered in libexif before 0.6.22. Several buffer over-reads in EXIF MakerNote handling could lead to information disclosure and crashes. This is different from CVE-2020-0093.

References

Affected packages

Alpine:v3.10 / libexif

libexif

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0
Fixed
0.6.22-r0

Affected versions

Alpine:v3.11 / libexif

libexif

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0
Fixed
0.6.22-r0

Affected versions

Alpine:v3.12 / libexif

libexif

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0
Fixed
0.6.22-r0

Affected versions

Alpine:v3.8 / libexif

libexif

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0
Fixed
0.6.22-r0

Affected versions

Alpine:v3.9 / libexif

libexif

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0
Fixed
0.6.22-r0

Affected versions