Red Hat Bugzilla – Bug 1573797
CVE-2018-10549 php: Out-of-bounds read in ext/exif/exif.c:exif_read_data() when reading crafted JPEG data
Last modified: 2018-10-25 11:42:46 EDT
An issue was discovered in PHP before from 5.6.25 to 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. exif_read_data in ext/exif/exif.c has an out-of-bounds read for crafted JPEG data because exif_iif_add_value mishandles the case of a MakerNote that lacks a final '\0' character. Upstream bug: https://bugs.php.net/bug.php?id=76130 Upstream patch: https://git.php.net/?p=php-src.git;a=commit;h=b4e4788c4461449b4587e19ef1f474ce938e4980
Created php tracking bugs for this issue: Affects: fedora-all [bug 1573816]