An issue was discovered in libexif before 0.6.22. An unrestricted size in handling Canon EXIF MakerNote data could lead to consumption of large amounts of compute time for decoding EXIF data.
References
Link | Resource |
---|---|
http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.html | Mailing List Third Party Advisory |
https://github.com/libexif/libexif/commit/e6a38a1a23ba94d139b1fa2cd4519fdcfe3c9bab | Patch Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2020/05/msg00025.html | Mailing List Third Party Advisory |
https://security.gentoo.org/glsa/202007-05 | Third Party Advisory |
https://usn.ubuntu.com/4396-1/ | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-05-21T15:50:42
Updated: 2020-07-27T00:06:15
Reserved: 2020-05-16T00:00:00
Link: CVE-2020-13114
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-05-21T16:15:10.930
Modified: 2022-04-27T14:45:16.417
Link: CVE-2020-13114
JSON object: View
Redhat Information
No data.
CWE