[CLSA-2026:1776791358] libexif: Fix of 3 CVEs
Type:
security
Severity:
Important
Release date:
2026-04-21 17:09:24 UTC
Description:
- CVE-2026-32775: fix buffer overwrite via integer underflow in MakerNote entry value handling - CVE-2026-40385: fix unsigned 32-bit integer overflow in Nikon MakerNote handling - CVE-2026-40386: fix integer underflow in Fuji/Olympus MakerNote size checks
Updated packages:
  • libexif-0.6.22-2.el7_9.tuxcare.els1.i686.rpm
    sha:cc9a2df541e7945a27544ce96b363331949bde6e26d441e385c1a61c61883802
  • libexif-0.6.22-2.el7_9.tuxcare.els1.x86_64.rpm
    sha:00bd5c8ef2eb29d4d8842d75ef72f58b531089614e70d9f9b82bfa1d12f1422e
  • libexif-devel-0.6.22-2.el7_9.tuxcare.els1.i686.rpm
    sha:16e43ed1c1acb64384e3f7d90ba139ab1753cc28da65ed9fedba8b9631bc9330
  • libexif-devel-0.6.22-2.el7_9.tuxcare.els1.x86_64.rpm
    sha:3e497e4c12905f9806bbdcbed5486eaa3bfddfb02ecace119f5d95f193236b82
  • libexif-doc-0.6.22-2.el7_9.tuxcare.els1.x86_64.rpm
    sha:c55acdf85d7b131dabe376c28f542766ee8b67b88ea73f7d7c65f34f58473f37
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.