CVE
- Id
- 29708
- CVE No.
- CVE-2007-6351
- Status
- Candidate
- Description
- libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial of service (infinite recursion) via an image file with crafted EXIF tags, possibly involving the exif_loader_write function in exif_loader.c.
- Phase
- Assigned (20071214)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
313319 | 29708 | CVE-2007-6351 | BUGTRAQ:20080105 rPSA-2008-0006-1 libexif | View |
313320 | 29708 | CVE-2007-6351 | URL:http://www.securityfocus.com/archive/1/archive/1/485822/100/0/threaded | View |
313321 | 29708 | CVE-2007-6351 | MISC:https://bugzilla.redhat.com/show_bug.cgi?id=425551 | View |
313322 | 29708 | CVE-2007-6351 | CONFIRM:https://bugzilla.redhat.com/show_bug.cgi?id=425621 | View |
313323 | 29708 | CVE-2007-6351 | CONFIRM:https://bugzilla.redhat.com/show_bug.cgi?id=425631 | View |
313324 | 29708 | CVE-2007-6351 | CONFIRM:http://bugs.gentoo.org/show_bug.cgi?id=202350 | View |
313325 | 29708 | CVE-2007-6351 | CONFIRM:https://issues.rpath.com/browse/RPL-2068 | View |
313326 | 29708 | CVE-2007-6351 | DEBIAN:DSA-1487 | View |
313327 | 29708 | CVE-2007-6351 | URL:http://www.debian.org/security/2008/dsa-1487 | View |
313328 | 29708 | CVE-2007-6351 | FEDORA:FEDORA-2007-4608 | View |
313329 | 29708 | CVE-2007-6351 | URL:https://www.redhat.com/archives/fedora-package-announce/2007-December/msg00597.html | View |
313330 | 29708 | CVE-2007-6351 | FEDORA:FEDORA-2007-4667 | View |
313331 | 29708 | CVE-2007-6351 | URL:https://www.redhat.com/archives/fedora-package-announce/2007-December/msg00626.html | View |
313332 | 29708 | CVE-2007-6351 | GENTOO:GLSA-200712-15 | View |
313333 | 29708 | CVE-2007-6351 | URL:http://security.gentoo.org/glsa/glsa-200712-15.xml | View |
313334 | 29708 | CVE-2007-6351 | MANDRIVA:MDVSA-2008:005 | View |
313335 | 29708 | CVE-2007-6351 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2008:005 | View |
313336 | 29708 | CVE-2007-6351 | REDHAT:RHSA-2007:1165 | View |
313337 | 29708 | CVE-2007-6351 | URL:http://www.redhat.com/support/errata/RHSA-2007-1165.html | View |
313338 | 29708 | CVE-2007-6351 | SUSE:SUSE-SR:2008:002 | View |
313339 | 29708 | CVE-2007-6351 | URL:http://www.novell.com/linux/security/advisories/suse_security_summary_report.html | View |
313340 | 29708 | CVE-2007-6351 | UBUNTU:USN-654-1 | View |
313341 | 29708 | CVE-2007-6351 | URL:http://www.ubuntu.com/usn/usn-654-1 | View |
313342 | 29708 | CVE-2007-6351 | BID:26976 | View |
313343 | 29708 | CVE-2007-6351 | URL:http://www.securityfocus.com/bid/26976 | View |
313344 | 29708 | CVE-2007-6351 | OVAL:oval:org.mitre.oval:def:9420 | View |
313345 | 29708 | CVE-2007-6351 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9420 | View |
313346 | 29708 | CVE-2007-6351 | VUPEN:ADV-2007-4278 | View |
313347 | 29708 | CVE-2007-6351 | URL:http://www.vupen.com/english/advisories/2007/4278 | View |
313348 | 29708 | CVE-2007-6351 | OSVDB:42652 | View |
313349 | 29708 | CVE-2007-6351 | URL:http://osvdb.org/42652 | View |
313350 | 29708 | CVE-2007-6351 | SECTRACK:1019124 | View |
313351 | 29708 | CVE-2007-6351 | URL:http://www.securitytracker.com/id?1019124 | View |
313352 | 29708 | CVE-2007-6351 | SECUNIA:28076 | View |
313353 | 29708 | CVE-2007-6351 | URL:http://secunia.com/advisories/28076 | View |
313354 | 29708 | CVE-2007-6351 | SECUNIA:28127 | View |
313355 | 29708 | CVE-2007-6351 | URL:http://secunia.com/advisories/28127 | View |
313356 | 29708 | CVE-2007-6351 | SECUNIA:28195 | View |
313357 | 29708 | CVE-2007-6351 | URL:http://secunia.com/advisories/28195 | View |
313358 | 29708 | CVE-2007-6351 | SECUNIA:28266 | View |
313359 | 29708 | CVE-2007-6351 | URL:http://secunia.com/advisories/28266 | View |
313360 | 29708 | CVE-2007-6351 | SECUNIA:28346 | View |
313361 | 29708 | CVE-2007-6351 | URL:http://secunia.com/advisories/28346 | View |
313362 | 29708 | CVE-2007-6351 | SECUNIA:28400 | View |
313363 | 29708 | CVE-2007-6351 | URL:http://secunia.com/advisories/28400 | View |
313364 | 29708 | CVE-2007-6351 | SECUNIA:28636 | View |
313365 | 29708 | CVE-2007-6351 | URL:http://secunia.com/advisories/28636 | View |
313366 | 29708 | CVE-2007-6351 | SECUNIA:28776 | View |
313367 | 29708 | CVE-2007-6351 | URL:http://secunia.com/advisories/28776 | View |
313368 | 29708 | CVE-2007-6351 | SECUNIA:32274 | View |
313369 | 29708 | CVE-2007-6351 | URL:http://secunia.com/advisories/32274 | View |
313370 | 29708 | CVE-2007-6351 | XF:libexif-exifloaderwrit-dos(39166) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
54284 | JVNDB-2007-002976 | exiv2 library の exif.cpp における整数オーバーフローの脆弱性 | exiv2 library の exif.cpp には、整数オーバーフローの脆弱性が存在します。 | CVE-2007-6353 | 29708 | 7.5 | http://jvndb.jvn.jp/ja/contents/2007/JVNDB-2007-002976.html | View |