Libexifproject
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in any Libexifproject product.
RSS Feeds for Libexifproject security vulnerabilities
Create a CVE RSS feed including security vulnerabilities found in Libexifproject products with stack.watch. Just hit watch, then grab your custom RSS feed url.
Products by Libexifproject Sorted by Most Security Vulnerabilities since 2018
By the Year
In 2026 there have been 0 vulnerabilities in Libexifproject. Libexifproject did not have any published security vulnerabilities last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 0 | 0.00 |
| 2024 | 0 | 0.00 |
| 2023 | 0 | 0.00 |
| 2022 | 0 | 0.00 |
| 2021 | 1 | 5.50 |
| 2020 | 7 | 6.67 |
| 2019 | 1 | 0.00 |
| 2018 | 1 | 8.10 |
It may take a day or so for new Libexifproject vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Libexifproject Security Vulnerabilities
| CVE | Date | Vulnerability | Products |
|---|---|---|---|
| CVE-2021-27815 | Apr 14, 2021 |
NULL Pointer Deference in the exif command line tool, when printing out XML formatted EXIF data, in exif v0.6.22 and earlierNULL Pointer Deference in the exif command line tool, when printing out XML formatted EXIF data, in exif v0.6.22 and earlier allows attackers to cause a Denial of Service (DoS) by uploading a malicious JPEG file, causing the application to crash. |
|
| CVE-2020-0181 | Jun 11, 2020 |
In exif_data_load_data_thumbnail of exif-data.c, there is a possible denial of service due to an integer overflowIn exif_data_load_data_thumbnail of exif-data.c, there is a possible denial of service due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-145075076 |
|
| CVE-2020-0198 | Jun 11, 2020 |
In exif_data_load_data_content of exif-data.c, there is a possible UBSAN abort due to an integer overflowIn exif_data_load_data_content of exif-data.c, there is a possible UBSAN abort due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-146428941 |
|
| CVE-2020-13113 | May 21, 2020 |
An issue was discovered in libexif before 0.6.22An issue was discovered in libexif before 0.6.22. Use of uninitialized memory in EXIF Makernote handling could lead to crashes and potential use-after-free conditions. |
|
| CVE-2020-13114 | May 21, 2020 |
An issue was discovered in libexif before 0.6.22An issue was discovered in libexif before 0.6.22. An unrestricted size in handling Canon EXIF MakerNote data could lead to consumption of large amounts of compute time for decoding EXIF data. |
|
| CVE-2020-13112 | May 21, 2020 |
An issue was discovered in libexif before 0.6.22An issue was discovered in libexif before 0.6.22. Several buffer over-reads in EXIF MakerNote handling could lead to information disclosure and crashes. This is different from CVE-2020-0093. |
|
| CVE-2020-0093 | May 14, 2020 |
In exif_data_save_data_entry of exif-data.c, there is a possible out of bounds read due to a missing bounds checkIn exif_data_save_data_entry of exif-data.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-148705132 |
|
| CVE-2020-12767 | May 09, 2020 |
exif_entry_get_value in exif-entry.c in libexif 0.6.21 has a divide-by-zero error.exif_entry_get_value in exif-entry.c in libexif 0.6.21 has a divide-by-zero error. |
|
| CVE-2018-20030 | Feb 20, 2019 |
An error when processing the EXIF_IFD_INTEROPERABILITY and EXIF_IFD_EXIF tags within libexif version 0.6.21An error when processing the EXIF_IFD_INTEROPERABILITY and EXIF_IFD_EXIF tags within libexif version 0.6.21 can be exploited to exhaust available CPU resources. |
|
| CVE-2016-6328 | Oct 31, 2018 |
A vulnerability was found in libexifA vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS) and Information Disclosure (disclosing some critical heap chunk metadata, even other applications' private data). |
|