CVE-2007-6353
EPSS 2.3%exiv2 - arbitrary code execution
Published: 12/20/2007Modified: 4/28/2026
Also known as:DEBIAN-CVE-2007-6353
Description
Integer overflow in exif.cpp in exiv2 library allows context-dependent attackers to execute arbitrary code via a crafted EXIF file that triggers a heap-based buffer overflow.
Affected packages (2)
- Debian/exiv2from 0, < 0.15-2
- Debian/exiv2from 0, < 0.10-1.5