jhead 3.03 is affected by: Buffer Overflow. The impact is: Denial of service. The component is: gpsinfo.c Line 151 ProcessGpsInfo(). The attack vector is: Open a specially crafted JPEG file.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade jhead | Jan 2, 2020 | Jul 15, 2019 |
| Gentoo Linux | — | Upgrade media-gfx/jhead. | Jul 28, 2020 | Jul 15, 2019 |
| Suse | — | Upgrade jhead | May 18, 2021 | Jul 15, 2019 |
| Ubuntu | — | Upgrade jheadUpgrade jhead (Ubuntu Pro) | May 24, 2023 | Jul 15, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub