CVE-2026-40386
7.1
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Exploitability: 1.8 / Impact: 5.2
Source: NVD
Description
In libexif through 0.6.25, an integer underflow in size checking for Fuji and Olympus MakerNote decoding could be used by attackers to crash or leak information out of libexif-using programs.
Affected (1)
Products: Libexif Project: Libexif
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 0.6.25 |
References (1)
Source: cve@mitre.org
Patch
Timeline
No history available yet.