CVE-2026-40341

Source
https://cve.org/CVERecord?id=CVE-2026-40341
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-40341.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-40341
Aliases
  • GHSA-vjx3-gjp6-r2g2
Downstream
Related
Published
2026-04-17T23:48:36.644Z
Modified
2026-07-15T19:00:06.415568Z
Severity
  • 3.5 (Low) CVSS_V3 - CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L CVSS Calculator
Summary
libgphoto2 has an OOB Read in ptp_unpack_EOS_FocusInfoEx
Details

libgphoto2 is a camera access and control library. In versions up to and including 2.5.33, an out of bound read in ptpunpackEOS_FocusInfoEx could be used to crash libgphoto2 when processing input from untrusted USB devices. Commit c385b34af260595dfbb5f9329526be5158985987 contains a patch. No known workarounds are available.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/40xxx/CVE-2026-40341.json",
    "cna_assigner": "GitHub_M",
    "cwe_ids": [
        "CWE-126"
    ]
}
References

Affected packages

Git / github.com/gphoto/libgphoto2

Affected ranges

Type
GIT
Repo
https://github.com/gphoto/libgphoto2
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
{
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "2.5.33"
        }
    ],
    "source": [
        "AFFECTED_FIELD",
        "REFERENCES"
    ]
}

Affected versions

Other
libgphoto2-2_5_0-release
libgphoto2-2_5_1-release
libgphoto2-2_5_10-release
libgphoto2-2_5_11-release
libgphoto2-2_5_12-release
libgphoto2-2_5_13-release
libgphoto2-2_5_14-release
libgphoto2-2_5_15-release
libgphoto2-2_5_16-release
libgphoto2-2_5_17-release
libgphoto2-2_5_18-release
libgphoto2-2_5_19-release
libgphoto2-2_5_1_1-release
libgphoto2-2_5_2-release
libgphoto2-2_5_20-release
libgphoto2-2_5_21-release
libgphoto2-2_5_22-release
libgphoto2-2_5_23-release
libgphoto2-2_5_24-release
libgphoto2-2_5_25-release
libgphoto2-2_5_26-release
libgphoto2-2_5_27-release
libgphoto2-2_5_28-release
libgphoto2-2_5_29-release
libgphoto2-2_5_3-release
libgphoto2-2_5_30-release
libgphoto2-2_5_31-release
libgphoto2-2_5_32-release
libgphoto2-2_5_3_1-release
libgphoto2-2_5_4-release
libgphoto2-2_5_5-release
libgphoto2-2_5_5_1-release
libgphoto2-2_5_6-release
libgphoto2-2_5_7-release
libgphoto2-2_5_8-release
libgphoto2-2_5_9-release
v2.*
v2.5.24
v2.5.25
v2.5.26
v2.5.27
v2.5.28
v2.5.29
v2.5.30
v2.5.31
v2.5.32

Database specific

vanir_signatures_modified
"2026-07-15T19:00:06Z"
vanir_signatures
[
    {
        "digest": {
            "line_hashes": [
                "258582655906751970630966496938119664281",
                "78941112976921275711734457015865885946",
                "109452470182342557781666884678836204697",
                "137015440017492297459704849380306134567",
                "11872365305191241721873721091898219903",
                "217711385345284542476141326597538388102",
                "51405930467384719432128832685877843624",
                "103606243712705923082730633945678828229",
                "29271901911609501005610000736690207846",
                "287042753991492628820909275322865098100",
                "297612241182069321913886235904793627351",
                "11285748948342657144024348675136217658",
                "320013745673967842719584336044105969473",
                "245868370601042827262422469940129334302",
                "45121726755038169435815110667949712633",
                "7089693294881952297198767655197687162",
                "141731332143824515363864819925460499351",
                "145433640442775531218402450246076574952",
                "332157298026318059049292425920315687697"
            ],
            "threshold": 0.9
        },
        "deprecated": false,
        "signature_type": "Line",
        "id": "CVE-2026-40341-5614777c",
        "signature_version": "v1",
        "source": "https://github.com/gphoto/libgphoto2/commit/c385b34af260595dfbb5f9329526be5158985987",
        "target": {
            "file": "camlibs/ptp2/ptp-pack.c"
        }
    },
    {
        "digest": {
            "function_hash": "80995179379386253128631383211137099139",
            "length": 2498.0
        },
        "deprecated": false,
        "signature_type": "Function",
        "id": "CVE-2026-40341-901db5c8",
        "signature_version": "v1",
        "source": "https://github.com/gphoto/libgphoto2/commit/c385b34af260595dfbb5f9329526be5158985987",
        "target": {
            "file": "camlibs/ptp2/ptp-pack.c",
            "function": "ptp_unpack_EOS_FocusInfoEx"
        }
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-40341.json"