Bug 425561 (CVE-2007-6352)

Summary: CVE-2007-6352 libexif integer overflow
Product: [Other] Security Response Reporter: Josh Bressers <bressers>
Component: vulnerabilityAssignee: Red Hat Product Security <security-response-team>
Status: CLOSED ERRATA QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: unspecifiedCC: kreilly, mkoci
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2008-01-11 17:13:09 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 425621, 425631, 425641, 425651, 425661, 425671, 425681, 833926    
Bug Blocks:    
Attachments:
Description Flags
Upstream patch none

Description Josh Bressers 2007-12-14 22:15:56 UTC
An integer overflow flaw was found in libexif.  This flaw could be leveraged by
an attacker to execute arbitrary code withe the permissions of the application
parsing the EXIF image data.

Comment 1 Josh Bressers 2007-12-14 22:15:56 UTC
Created attachment 289541 [details]
Upstream patch

Comment 7 Tomas Hoger 2007-12-19 16:54:30 UTC
Fixed in affected Red Hat Enterprise Linux versions:
  http://rhn.redhat.com/errata/RHSA-2007-1165.html
  http://rhn.redhat.com/errata/RHSA-2007-1166.html