CVE-2026-32775

high

Description

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

References

https://github.com/libexif/libexif/issues/247

https://github.com/libexif/libexif/commit/7df372e9d31d7c993a22b913c813a5f7ec4f3692

Details

Source: Mitre, NVD

Published: 2026-03-16

Updated: 2026-03-16

Risk Information

CVSS v2

Base Score: 6.2

Vector: CVSS2#AV:L/AC:H/Au:N/C:C/I:C/A:C

Severity: Medium

CVSS v3

Base Score: 7.4

Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00013