GCVE-VVD-MAGEIA-2017-105
Advisory Published
Vulnetix · Advisory published November 7, 2017
It was discovered that jhead, a tool to manipulate the non-image part of EXIF compliant JPEG files, is prone to an out-of-bounds access vulnerability, which may result in denial of service or, potentially, the execution of arbitrary code if an image with specially crafted EXIF data is processed.

Affected Products

VendorProductVersionsPlatforms
Mageiaarduino0 (affected), 1.6.5-3.1.mga6 (unaffected)
Mageiajhead0 (affected), 2.97-4.1.mga5 (unaffected), 0 (affected), 2.97-4.1.mga5 (unaffected)

Aliases

Transitive aliases

References

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.