CVE-2026-40385: Integer Overflow
In libexif through 0.6.25, an unsigned 32bit integer overflow in Nikon MakerNote handling could be used by local attackers to cause crashes or information leaks. This only affects 32bit systems.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/libexifto a version that resolves this vulnerability.Fixed in 0.6.22-3+deb11u1Fixed in 0.6.24-1+deb12u1Fixed in 0.6.25-1+deb13u1Fixed in 0.6.26-1 - Upgrade
Upgrade
libexifto a version that resolves this vulnerability.Fixed in 0.6.25 - Compensating control
Limit exposure on 32-bit systems only, since the unsigned 32-bit integer overflow in Nikon MakerNote handling affects 32-bit systems.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-40385?
CVE-2026-40385 is classified as a potential medium severity vulnerability due to the risk of crashes and information leaks.
How do I fix CVE-2026-40385?
To fix CVE-2026-40385, upgrade to libexif version 0.6.26 or later.
Who is affected by CVE-2026-40385?
CVE-2026-40385 specifically affects users running vulnerable versions of libexif on 32-bit systems.
What could be the impact of CVE-2026-40385?
Exploiting CVE-2026-40385 could lead to application crashes or the exposure of sensitive information.
Is CVE-2026-40385 present in earlier versions of libexif?
Yes, CVE-2026-40385 exists in all libexif versions up to and including 0.6.25.