Curtis Galloway

2 exploits Active since Oct 2018
CVE-2020-0198 NOMISEC HIGH WORKING POC
Android <10 - DoS
In exif_data_load_data_content of exif-data.c, there is a possible UBSAN abort due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-146428941
CVSS 7.5
CVE-2016-6328 NOMISEC HIGH WORKING POC
libexif - DoS/Info Disclosure
A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS) and Information Disclosure (disclosing some critical heap chunk metadata, even other applications' private data).
CVSS 8.1