In exifdataloaddatathumbnail of exif-data.c, there is a possible denial of service due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-145075076
Heap-based buffer overflow in the exifentryfix function (aka the tag fixup routine) in libexif/exif-entry.c in libexif 0.6.18 allows remote attackers to cause a denial of service or possibly execute arbitrary code via an invalid EXIF image. NOTE: some of these details are obtained from third party information.
An integer overflow flaw was found in libexif. This flaw could be leveraged by an attacker to execute arbitrary code withe the permissions of the application parsing the EXIF image data.
An infinite recursion flaw was found in libexif. This could be leveraged by an attacker to crash an application using libexif to process image data content.