CVE-2021-28276: High severity jhead vulnerability
Published Mar 23, 2022
·Updated
A Denial of Service vulnerability exists in jhead 3.04 and 3.05 via a wild address read in the ProcessCanonMakerNoteDir function in makernote.c.
Affected Software
2 affected components
Jhead Project Jhead=3.04
Jhead Project Jhead=3.05
Remediation
Patch Available
Event History
Mar 23, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Denial of Service vulnerability in jhead?
The vulnerability ID for this Denial of Service vulnerability in jhead is CVE-2021-28276.
2
What is the severity rating of CVE-2021-28276?
The severity rating of CVE-2021-28276 is high with a CVSS score of 7.5.
3
Which versions of jhead are affected by CVE-2021-28276?
The versions 3.04 and 3.05 of jhead are affected by CVE-2021-28276.
4
How can I exploit this vulnerability?
We do not provide information on how to exploit vulnerabilities.
5
Is there a fix available for CVE-2021-28276?
Yes, there is a fix available for CVE-2021-28276. It is recommended to update to a version higher than 3.05.