The mnote_olympus_entry_get_value function in olympus/mnote-olympus-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote attackers to cause a denial of service (divide-by-zero error) via an image with crafted EXIF tags that are not properly handled during the formatting of EXIF maker note tags.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/54437 | vdb entry |
http://www.debian.org/security/2012/dsa-2559 | vendor advisory |
http://lists.opensuse.org/opensuse-security-announce/2012-07/msg00015.html | vendor advisory |
http://sourceforge.net/mailarchive/message.php?msg_id=29534027 | mailing list |
http://secunia.com/advisories/49988 | third party advisory |
http://rhn.redhat.com/errata/RHSA-2012-1255.html | vendor advisory |
http://www.ubuntu.com/usn/USN-1513-1 | vendor advisory |
http://lists.opensuse.org/opensuse-security-announce/2012-07/msg00014.html | vendor advisory |