libexif: An EXIF Tag Parsing Library for Digital Cameras ---------------------------------------------------------------------- File: libexif-0.6.13-20.9.i586.rpm Patchrpm: libexif-0.6.13-20.9.i586.patch.rpm Version: 0.6.13-20.9 Size: 417 kB Patchsize: 307 kB Date: Wed 09 Jan 2008 16:22:31 CET Source: libexif-0.6.13-20.9.src.rpm Security: Yes ---------------------------------------------------------------------- Description: Two bugs in libexif were identified by a Google Security Audit done by Meder Kydyraliev. CVE-2007-6351: Loading EXIF data could be used to cause a infinite recursion and crash CVE-2007-6352: Integer overflows in the thumbnail handler could be used to overflow buffers and potentially execute code or crash a program using libexif.