A Denial of Service vulnerability exists in jhead 3.04 and 3.05 due to a wild address read in the Get16u function in exif.c in will cause segmentation fault via a crafted_file.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-28275.json"
[ { "events": [ { "introduced": "0" }, { "last_affected": "3.04" } ] }, { "events": [ { "introduced": "0" }, { "last_affected": "3.05" } ] } ]