Camouflage 1.2.1 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replacing certain bytes of the JPEG image with alternate password information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/21939 | vdb entry |
http://secunia.com/advisories/23578 | third party advisory vendor advisory |
http://www.securityfocus.com/archive/1/456541/100/0/threaded | mailing list |
http://homepage.mac.com/adonismac/Advisory/steg/camouflage.html | exploit vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/31375 | vdb entry |
http://osvdb.org/32651 | vdb entry |