CVE-2019-9278
published 2019-09-27CVE-2019-9278: In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider…
PriorityP351high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
4.06%
89.5th percentile
In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112537774
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | libexif | < libexif 0.6.21-6 (bookworm) | libexif 0.6.21-6 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| android | — | — | |
| android | — | — | |
| libexif_project | libexif | >= 0 < 0.6.21-6 | 0.6.21-6 |
| libexif_project | libexif | >= 0 < 0.6.21-6 | 0.6.21-6 |
| libexif_project | libexif | >= 0 < 0.6.21-6 | 0.6.21-6 |
| libexif_project | libexif | >= 0 < 0.6.21-6 | 0.6.21-6 |
| libexif_project | libexif | >= 0 < 0.6.21-2ubuntu0.1 | 0.6.21-2ubuntu0.1 |
| libexif_project | libexif | >= 0 < 0.6.21-4ubuntu0.1 | 0.6.21-4ubuntu0.1 |
| libexif_project | libexif | >= 0 < 0.6.21-1ubuntu1+esm1 | 0.6.21-1ubuntu1+esm1 |
| opensuse | leap | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
vendor_ubuntu8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wwvf-m6j5-65jw: In libexif, there is a possible out of bounds write due to an integer overflow
ghsa_unreviewed·2022-05-24
CVE-2019-9278 [MEDIUM] CWE-787 GHSA-wwvf-m6j5-65jw: In libexif, there is a possible out of bounds write due to an integer overflow
In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112537774
OSV
libexif vulnerabilities
osv·2020-02-11·CVSS 8.1
CVE-2016-6328 [HIGH] libexif vulnerabilities
libexif vulnerabilities
Liu Bingchang discovered that libexif incorrectly handled certain files.
An attacker could possibly use this issue to access sensitive information or
cause a denial of service. This issue only affected Ubuntu 12.04 ESM, Ubuntu 14.04 ESM and
Ubuntu 16.04 LTS. (CVE-2016-6328)
Lili Xu and Bingchang Liu discovered that libexif incorrectly handled certain files.
An attacker could possibly use this issue to access sensitive information or cause
a denial of service. This issue only affected Ubuntu 12.04 ESM, Ubuntu 14.04 ESM and
Ubuntu 16.04 LTS. (CVE-2017-7544)
It was discovered that libexif incorrectly handled certain files. An attacker could
possibly use this issue to execute arbitrary code. (CVE-2019-9278)
OSV
CVE-2019-9278: In libexif, there is a possible out of bounds write due to an integer overflow
osv·2019-09-27·CVSS 8.8
CVE-2019-9278 [HIGH] CVE-2019-9278: In libexif, there is a possible out of bounds write due to an integer overflow
In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112537774
Ubuntu
libexif vulnerabilities
vendor_ubuntu·2020-02-11·CVSS 8.1
CVE-2016-6328 [HIGH] libexif vulnerabilities
Title: libexif vulnerabilities
Summary: Several security issues were fixed in libexif.
Liu Bingchang discovered that libexif incorrectly handled certain files.
An attacker could possibly use this issue to access sensitive information or
cause a denial of service. This issue only affected Ubuntu 12.04 ESM, Ubuntu 14.04 ESM and
Ubuntu 16.04 LTS. (CVE-2016-6328)
Lili Xu and Bingchang Liu discovered that libexif incorrectly handled certain files.
An attacker could possibly use this issue to access sensitive information or cause
a denial of service. This issue only affected Ubuntu 12.04 ESM, Ubuntu 14.04 ESM and
Ubuntu 16.04 LTS. (CVE-2017-7544)
It was discovered that libexif incorrectly handled certain files. An attacker could
possibly use this issue to execute arbitrary code. (CVE-2019-92
Red Hat
libexif: out of bounds write in exif-data.c
vendor_redhat·2019-12-01·CVSS 8.8
CVE-2019-9278 [HIGH] CWE-787 libexif: out of bounds write in exif-data.c
libexif: out of bounds write in exif-data.c
In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112537774
Package: libexif (Red Hat Enterprise Linux 5) - Out of support scope
Package: libexif (Red Hat Enterprise Linux 6) - Out of support scope
Debian
CVE-2019-9278: libexif - In libexif, there is a possible out of bounds write due to an integer overflow. ...
vendor_debian·2019·CVSS 8.8
CVE-2019-9278 [HIGH] CVE-2019-9278: libexif - In libexif, there is a possible out of bounds write due to an integer overflow. ...
In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112537774
Scope: local
bookworm: resolved (fixed in 0.6.21-6)
bullseye: resolved (fixed in 0.6.21-6)
forky: resolved (fixed in 0.6.21-6)
sid: resolved (fixed in 0.6.21-6)
trixie: resolved (fixed in 0.6.21-6)
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.htmlhttp://www.openwall.com/lists/oss-security/2019/10/25/17http://www.openwall.com/lists/oss-security/2019/10/27/1http://www.openwall.com/lists/oss-security/2019/11/07/1https://github.com/libexif/libexif/commit/75aa73267fdb1e0ebfbc00369e7312bac43d0566https://github.com/libexif/libexif/issues/26https://lists.debian.org/debian-lts-announce/2020/02/msg00007.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MO2VTHD7OLPJDCJBHKUQTBAHZOBBCF6X/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VA5BPQLOFXIZOOJHBYDU635Z5KLUMTDD/https://seclists.org/bugtraq/2020/Feb/9https://security.gentoo.org/glsa/202007-05https://source.android.com/security/bulletin/android-10https://usn.ubuntu.com/4277-1/https://www.debian.org/security/2020/dsa-4618http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.htmlhttp://www.openwall.com/lists/oss-security/2019/10/25/17http://www.openwall.com/lists/oss-security/2019/10/27/1http://www.openwall.com/lists/oss-security/2019/11/07/1https://github.com/libexif/libexif/commit/75aa73267fdb1e0ebfbc00369e7312bac43d0566https://github.com/libexif/libexif/issues/26https://lists.debian.org/debian-lts-announce/2020/02/msg00007.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MO2VTHD7OLPJDCJBHKUQTBAHZOBBCF6X/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VA5BPQLOFXIZOOJHBYDU635Z5KLUMTDD/https://seclists.org/bugtraq/2020/Feb/9https://security.gentoo.org/glsa/202007-05https://source.android.com/security/bulletin/android-10https://usn.ubuntu.com/4277-1/https://www.debian.org/security/2020/dsa-4618
2019-09-27
Published