An issue was discovered in libexif before 0.6.22. Use of uninitialized memory in EXIF Makernote handling could lead to crashes and potential use-after-free conditions.
[
{
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/libexif/libexif/commit/ec412aa4583ad71ecabb967d3c77162760169d1f",
"signature_type": "Line",
"id": "CVE-2020-13113-94b8b898",
"digest": {
"threshold": 0.9,
"line_hashes": [
"63090266439464873986942635232246469126",
"133352749772712821961584651055235107129",
"87180012295696138925344357238405859904"
]
},
"target": {
"file": "libexif/pentax/exif-mnote-data-pentax.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/libexif/libexif/commit/ec412aa4583ad71ecabb967d3c77162760169d1f",
"signature_type": "Line",
"id": "CVE-2020-13113-a2502673",
"digest": {
"threshold": 0.9,
"line_hashes": [
"171665474353090061899021564791197257152",
"116301063513059510679027604740839939787",
"33983948157538593294138539723360334410",
"231840623465655071498280023479608178034"
]
},
"target": {
"file": "libexif/olympus/exif-mnote-data-olympus.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/libexif/libexif/commit/ec412aa4583ad71ecabb967d3c77162760169d1f",
"signature_type": "Line",
"id": "CVE-2020-13113-a2eb331e",
"digest": {
"threshold": 0.9,
"line_hashes": [
"63090266439464873986942635232246469126",
"225602874433340598213515522161546468010",
"215464518781960057437098919856189329355"
]
},
"target": {
"file": "libexif/canon/exif-mnote-data-canon.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/libexif/libexif/commit/ec412aa4583ad71ecabb967d3c77162760169d1f",
"signature_type": "Function",
"id": "CVE-2020-13113-af3fbf42",
"digest": {
"function_hash": "60821619512570704490696459539065569381",
"length": 3532.0
},
"target": {
"function": "exif_mnote_data_pentax_load",
"file": "libexif/pentax/exif-mnote-data-pentax.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/libexif/libexif/commit/ec412aa4583ad71ecabb967d3c77162760169d1f",
"signature_type": "Line",
"id": "CVE-2020-13113-b11b808f",
"digest": {
"threshold": 0.9,
"line_hashes": [
"63090266439464873986942635232246469126",
"133352749772712821961584651055235107129",
"59814921405938895402439206079570764350"
]
},
"target": {
"file": "libexif/fuji/exif-mnote-data-fuji.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/libexif/libexif/commit/ec412aa4583ad71ecabb967d3c77162760169d1f",
"signature_type": "Function",
"id": "CVE-2020-13113-b8c82fdb",
"digest": {
"function_hash": "20638438429645367164789719521734894738",
"length": 2842.0
},
"target": {
"function": "exif_mnote_data_fuji_load",
"file": "libexif/fuji/exif-mnote-data-fuji.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/libexif/libexif/commit/ec412aa4583ad71ecabb967d3c77162760169d1f",
"signature_type": "Function",
"id": "CVE-2020-13113-d6752acb",
"digest": {
"function_hash": "287078706475236992644152500043678847654",
"length": 6180.0
},
"target": {
"function": "exif_mnote_data_olympus_load",
"file": "libexif/olympus/exif-mnote-data-olympus.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/libexif/libexif/commit/ec412aa4583ad71ecabb967d3c77162760169d1f",
"signature_type": "Function",
"id": "CVE-2020-13113-d9365afb",
"digest": {
"function_hash": "191996382206296598990556007166730683120",
"length": 2658.0
},
"target": {
"function": "exif_mnote_data_canon_load",
"file": "libexif/canon/exif-mnote-data-canon.c"
}
}
]