#VU31850 Division by zero in libexif


Published: 2020-07-26

Vulnerability identifier: #VU31850

Vulnerability risk: Medium

CVSSv3.1: 5.7 [CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C]

CVE-ID: CVE-2012-2837

CWE-ID: CWE-369

Exploitation vector: Network

Exploit availability: No

Vulnerable software:
libexif
Universal components / Libraries / Libraries used by multiple products

Vendor: libexif.sourceforge.net

Description

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to divide-by-zero error within the mnote_olympus_entry_get_value function in olympus/mnote-olympus-entry.c in the EXIF Tag Parsing Library. A remote attacker can perform a denial of service (divide-by-zero error) via an image with crafted EXIF tags that are not properly handled during the formatting of EXIF maker note tags.

Mitigation
Install update from vendor's website.

Vulnerable software versions

libexif: 0.6.9 - 0.6.20


External links
http://lists.opensuse.org/opensuse-security-announce/2012-07/msg00014.html
http://lists.opensuse.org/opensuse-security-announce/2012-07/msg00015.html
http://rhn.redhat.com/errata/RHSA-2012-1255.html
http://secunia.com/advisories/49988
http://sourceforge.net/mailarchive/message.php?msg_id=29534027
http://www.debian.org/security/2012/dsa-2559
http://www.securityfocus.com/bid/54437
http://www.ubuntu.com/usn/USN-1513-1


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.


Latest bulletins with this vulnerability