Summary
The remote host is missing an update to libexif
announced via advisory DSA 709-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20709-1
Insight
Sylvain Defresne discovered a buffer overflow in libexif, a library that parses EXIF files (such as JPEG files with extra tags). This bug could be exploited to crash the application and maybe to execute arbitrary code as well.
For the stable distribution (woody) this problem has been fixed in version 0.5.0-1woody1.
For the unstable distribution (sid) this problem has been fixed in version 0.6.9-5.
We recommend that you upgrade your libexif package.
Severity
Classification
-
CVE CVE-2005-0664 -
CVSS Base Score: 2.6
AV:N/AC:H/Au:N/C:N/I:N/A:P
Related Vulnerabilities