CVE-2007-6351
published 2007-12-20CVE-2007-6351: libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial of service (infinite recursion) via an image file with crafted EXIF tags…
PriorityP414medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
1.68%
74.3th percentile
libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial of service (infinite recursion) via an image file with crafted EXIF tags, possibly involving the exif_loader_write function in exif_loader.c.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libexif | < libexif 0.6.16-2.1 (bookworm) | libexif 0.6.16-2.1 (bookworm) |
| libexif_project | libexif | <= 0.6.16 | — |
| libexif_project | libexif | — | — |
| libexif_project | libexif | — | — |
| libexif_project | libexif | >= 0 < 0.6.16-2.1 | 0.6.16-2.1 |
| libexif_project | libexif | >= 0 < 0.6.16-2.1 | 0.6.16-2.1 |
| libexif_project | libexif | >= 0 < 0.6.16-2.1 | 0.6.16-2.1 |
| libexif_project | libexif | >= 0 < 0.6.16-2.1 | 0.6.16-2.1 |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3LOW
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-4j78-c8h2-ff3f: libexif 0
ghsa_unreviewed·2022-05-01
CVE-2007-6351 [MEDIUM] GHSA-4j78-c8h2-ff3f: libexif 0
libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial of service (infinite recursion) via an image file with crafted EXIF tags, possibly involving the exif_loader_write function in exif_loader.c.
OSV
CVE-2007-6351: libexif 0
osv·2007-12-20·CVSS 4.3
CVE-2007-6351 [MEDIUM] CVE-2007-6351: libexif 0
libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial of service (infinite recursion) via an image file with crafted EXIF tags, possibly involving the exif_loader_write function in exif_loader.c.
Ubuntu
libexif vulnerabilities
vendor_ubuntu·2008-10-14
CVE-2007-6351 libexif vulnerabilities
Title: libexif vulnerabilities
Summary: libexif vulnerabilities
Meder Kydyraliev discovered that libexif did not correctly handle certain
EXIF headers. If a user or automated system were tricked into processing
a specially crafted image, a remote attacker could cause the application
linked against libexif to crash, leading to a denial of service, or
possibly executing arbitrary code with user privileges.
Instructions: After a standard system upgrade you need to restart your session to effect
the necessary changes.
Red Hat
libexif infinite recursion flaw (DoS)
vendor_redhat·2007-12-14·CVSS 4.3
CVE-2007-6351 [MEDIUM] libexif infinite recursion flaw (DoS)
libexif infinite recursion flaw (DoS)
libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial of service (infinite recursion) via an image file with crafted EXIF tags, possibly involving the exif_loader_write function in exif_loader.c.
Debian
CVE-2007-6351: libexif - libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial ...
vendor_debian·2007·CVSS 4.3
CVE-2007-6351 [MEDIUM] CVE-2007-6351: libexif - libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial ...
libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial of service (infinite recursion) via an image file with crafted EXIF tags, possibly involving the exif_loader_write function in exif_loader.c.
Scope: local
bookworm: resolved (fixed in 0.6.16-2.1)
bullseye: resolved (fixed in 0.6.16-2.1)
forky: resolved (fixed in 0.6.16-2.1)
sid: resolved (fixed in 0.6.16-2.1)
trixie: resolved (fixed in 0.6.16-2.1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2007-6351 CVE-2007-6352 libexif various flaws [Fdevel]
bugzilla·2007-12-14·CVSS 4.3
CVE-2007-6351 [MEDIUM] CVE-2007-6351 CVE-2007-6352 libexif various flaws [Fdevel]
CVE-2007-6351 CVE-2007-6352 libexif various flaws [Fdevel]
Fdevel tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Bugzilla
CVE-2007-6351 libexif infinite recursion flaw (DoS)
bugzilla·2007-12-14·CVSS 4.3
CVE-2007-6351 [MEDIUM] CVE-2007-6351 libexif infinite recursion flaw (DoS)
CVE-2007-6351 libexif infinite recursion flaw (DoS)
An infinite recursion flaw was found in libexif. This could be leveraged by an
attacker to crash an application using libexif to process image data content.
Discussion:
Created attachment 289531
Upstream patch taken from CVS
---
Fixed in affected Red Hat Enterprise Linux versions:
http://rhn.redhat.com/errata/RHSA-2007-1165.html
---
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2007-1165.html
Fedora:
https://admin.fedoraproject.org/updates/F7/FEDORA-2007-4608
https://admin.fedoraproject.org/updates/F8/FEDORA-2007-4667
Bugzilla
CVE-2007-6351 CVE-2007-6352 libexif various flaws [F8]
bugzilla·2007-12-14·CVSS 4.3
CVE-2007-6351 [MEDIUM] CVE-2007-6351 CVE-2007-6352 libexif various flaws [F8]
CVE-2007-6351 CVE-2007-6352 libexif various flaws [F8]
F8 tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
libexif-0.6.15-5.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
Bugzilla
CVE-2007-6351 CVE-2007-6352 libexif various flaws [F7]
bugzilla·2007-12-14·CVSS 4.3
CVE-2007-6351 [MEDIUM] CVE-2007-6351 CVE-2007-6352 libexif various flaws [F7]
CVE-2007-6351 CVE-2007-6352 libexif various flaws [F7]
F7 tracking bug: see blocks bug list for full details of the security issue(s).
[bug automatically created by: add-tracking-bugs]
Discussion:
libexif-0.6.15-3.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
http://bugs.gentoo.org/show_bug.cgi?id=202350http://osvdb.org/42652http://secunia.com/advisories/28076http://secunia.com/advisories/28127http://secunia.com/advisories/28195http://secunia.com/advisories/28266http://secunia.com/advisories/28346http://secunia.com/advisories/28400http://secunia.com/advisories/28636http://secunia.com/advisories/28776http://secunia.com/advisories/32274http://security.gentoo.org/glsa/glsa-200712-15.xmlhttp://www.debian.org/security/2008/dsa-1487http://www.mandriva.com/security/advisories?name=MDVSA-2008:005http://www.novell.com/linux/security/advisories/suse_security_summary_report.htmlhttp://www.redhat.com/support/errata/RHSA-2007-1165.htmlhttp://www.securityfocus.com/archive/1/485822/100/0/threadedhttp://www.securityfocus.com/bid/26976http://www.securitytracker.com/id?1019124http://www.ubuntu.com/usn/usn-654-1http://www.vupen.com/english/advisories/2007/4278https://bugzilla.redhat.com/show_bug.cgi?id=425551https://bugzilla.redhat.com/show_bug.cgi?id=425621https://bugzilla.redhat.com/show_bug.cgi?id=425631https://exchange.xforce.ibmcloud.com/vulnerabilities/39166https://issues.rpath.com/browse/RPL-2068https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9420https://www.redhat.com/archives/fedora-package-announce/2007-December/msg00597.htmlhttps://www.redhat.com/archives/fedora-package-announce/2007-December/msg00626.htmlhttp://bugs.gentoo.org/show_bug.cgi?id=202350http://osvdb.org/42652http://secunia.com/advisories/28076http://secunia.com/advisories/28127http://secunia.com/advisories/28195http://secunia.com/advisories/28266http://secunia.com/advisories/28346http://secunia.com/advisories/28400http://secunia.com/advisories/28636http://secunia.com/advisories/28776http://secunia.com/advisories/32274http://security.gentoo.org/glsa/glsa-200712-15.xmlhttp://www.debian.org/security/2008/dsa-1487http://www.mandriva.com/security/advisories?name=MDVSA-2008:005http://www.novell.com/linux/security/advisories/suse_security_summary_report.htmlhttp://www.redhat.com/support/errata/RHSA-2007-1165.htmlhttp://www.securityfocus.com/archive/1/485822/100/0/threadedhttp://www.securityfocus.com/bid/26976http://www.securitytracker.com/id?1019124http://www.ubuntu.com/usn/usn-654-1http://www.vupen.com/english/advisories/2007/4278https://bugzilla.redhat.com/show_bug.cgi?id=425551https://bugzilla.redhat.com/show_bug.cgi?id=425621https://bugzilla.redhat.com/show_bug.cgi?id=425631https://exchange.xforce.ibmcloud.com/vulnerabilities/39166https://issues.rpath.com/browse/RPL-2068https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9420https://www.redhat.com/archives/fedora-package-announce/2007-December/msg00597.htmlhttps://www.redhat.com/archives/fedora-package-announce/2007-December/msg00626.html
2007-12-20
Published