In libexif through 0.6.25, an unsigned 32bit integer overflow in Nikon MakerNote handling could be used by local attackers to cause crashes or information leaks. This only affects 32bit systems.
{ "binaries": [ { "binary_name": "libexif12", "binary_version": "0.6.21-2ubuntu0.6" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-40385.json"
{ "binaries": [ { "binary_name": "libexif12", "binary_version": "0.6.21-4ubuntu0.6" } ] }
{ "binaries": [ { "binary_name": "libexif12", "binary_version": "0.6.21-6ubuntu0.4" } ] }
{ "binaries": [ { "binary_name": "libexif12", "binary_version": "0.6.24-1build1" } ] }
{ "binaries": [ { "binary_name": "libexif12", "binary_version": "0.6.24-1build2" } ] }
{ "binaries": [ { "binary_name": "libexif12", "binary_version": "0.6.25-1" } ] }
{ "binaries": [ { "binary_name": "libexif12", "binary_version": "0.6.25-2" } ] }
{ "binaries": [ { "binary_name": "libexif12", "binary_version": "0.6.21-1ubuntu1+esm6" } ] }