Ubuntu Security Notice (C) 2007-2013 Canonical, Inc. / NASL script (C) 2007-2013 Tenable Network Security, Inc.
The remote Ubuntu host is missing one or more security-related patches.
Sean Larsson discovered that libexif did not correctly verify the size
of EXIF components. By tricking a user into opening an image with
specially crafted EXIF headers, a remote attacker could cause the
application using libexif to execute arbitrary code with user
Update the affected libexif-dev and / or libexif12 packages.
Risk factor :
Medium / CVSS Base Score : 6.8
Family: Ubuntu Local Security Checks
Nessus Plugin ID: 28079 ()
CVE ID: CVE-2006-4168