CVE-2021-22204

HIGH7.8⚠ KEVEPSS 92.8%

libimage-exiftool-perl - security update

發布日:2021/4/23修改日:2026/4/28加入 CISA KEV 日:2021/11/17

描述

Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up allows arbitrary code execution when parsing the malicious image

受影響套件(3)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH7.8CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

參考連結(1)