← Retour aux CVEs
CVE-2026-40386
MEDIUM4.0
Description
In libexif through 0.6.25, an integer underflow in size checking for Fuji and Olympus MakerNote decoding could be used by attackers to crash or leak information out of libexif-using programs.
Details CVE
Score CVSS v3.14.0
SeveriteMEDIUM
Vecteur CVSSCVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L
Vecteur d'attaqueLOCAL
ComplexiteHIGH
Privileges requisNONE
Interaction utilisateurNONE
Publie4/12/2026
Derniere modification4/14/2026
Sourcenvd
Observations honeypot0
Produits affectes
libexif_project:libexif
Faiblesses (CWE)
CWE-191
References
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.