Marcus Meissner
18 exploits
Active since Jun 2002
QEMU - DoS
libgphoto2 has OOB read in ptp_unpack_EOS_ImageFormat() and ptp_unpack_EOS_CustomFuncEx() due to missing length parameter in ptp-pack.c
CVSS 6.1
libgphoto2 missing null termination in ptp_unpack_Canon_FE() filename buffer in ptp-pack.c
CVSS 3.5
libgphoto2 has OOB read in ptp_unpack_DPV() UINT128/INT128 handling in ptp-pack.c
CVSS 5.2
libgphoto2 has memory leak in ptp_unpack_Sony_DPD() secondary enumeration list in ptp-pack.c
CVSS 2.4
libgphoto2 has OOB read in ptp_unpack_Sony_DPD() enumeration count parsing in ptp-pack.c
CVSS 5.2
libgphoto2 has OOB read in ptp_unpack_Sony_DPD() FormFlag parsing in ptp-pack.c
CVSS 5.2
libgphoto2 has OOB read in ptp_unpack_OI() in ptp-pack.c via malicious PTP ObjectInfo response
CVSS 6.1
libgphoto2 has an OOB Read in ptp_unpack_EOS_FocusInfoEx
CVSS 3.5
Libexif < 0.6.25 - Information Disclosure
CVSS 4.0
libexif <0.6.25 - Info Disclosure
CVSS 4.0
libexif through 0.6.25 - Memory Corruption
CVSS 7.4
Android -10 - Privilege Escalation
CVSS 8.8
libexif <0.6.22 - Info Disclosure
CVSS 9.1
exif <0.6.22 - DoS
CVSS 5.5
QEMU - DoS
XChat <1.8.7 - Command Injection
Linux kernel <4.10.13 - DoS
CVSS 5.5