Description
libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.
CVSS vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 1.4 | Impact: 5.9Attack Vector: Local
Complexity: High
Privileges: None
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: High
Availability: High
Affected Packages1 packages
🔴Vulnerability Details
3GHSAGHSA-pq8m-942f-68cv: libexif through 0↗2026-03-16 ▶ CVEListCVE-2026-32775: libexif through 0↗2026-03-16 ▶ OSVCVE-2026-32775: libexif through 0↗2026-03-16 ▶ 📋Vendor Advisories
3Red Hatlibexif: libexif: Buffer overwrite via integer underflow in MakerNotes decoding↗2026-03-16 ▶ MicrosoftCVE-2026-32775: Mariner: Mariner
mitre: mitre
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference: https://learn↗2026-03-10 ▶ DebianCVE-2026-32775: libexif - libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data...↗2026 ▶ 🕵️Threat Intelligence
1WizCVE-2026-32775 Impact, Exploitability, and Mitigation Steps | Wiz↗ ▶