CVE-2017-7544: Critical severity Libexif Project Libexif vulnerability
Published Sep 21, 2017
·Updated
Last updated 25 August 2025
Other sources
libexif through 0.6.21 is vulnerable to out-of-bounds heap read vulnerability in exifdatasavedataentry function in libexif/exif-data.c caused by improper length computation of the allocated data of an ExifMnote entry which can cause denial-of-service or possibly information disclosure.
— Launchpad
Affected Software
2 affected componentsFixes available
Libexif Project Libexif<=0.6.21
debian/libexif
0.6.22-30.6.24-10.6.25-1
Remediation
Event History
Sep 21, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Data Sourced
via NVD·09:29 PM
DescriptionSeverityWeaknessAffected Software
Jan 11, 2024
Data Sourced
via Launchpad·10:40 PM
Description
Feb 19, 2026
Data Sourced
via Ubuntu·06:03 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Debian·06:04 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID is CVE-2017-7544.
2
What is the severity of CVE-2017-7544?
The severity of CVE-2017-7544 is critical with a severity value of 9.1.
3
Which software versions are affected by CVE-2017-7544?
Versions up to and including libexif 0.6.21 are affected by CVE-2017-7544.
4
What is the impact of CVE-2017-7544?
CVE-2017-7544 can cause denial-of-service or possibly information disclosure.
5
Are there any fixes or patches available for CVE-2017-7544?
Yes, fixes or patches are available for CVE-2017-7544. Please refer to the references for more information.