Vulnerability Bulletins

DSA-3825 jhead - security update

   
Affected software Debian
 
It was discovered that jhead, a tool to manipulate the non-image part ofEXIF compliant JPEG files, is prone to an out-of-bounds accessvulnerability, which may result in denial of service or, potentially,the execution of arbitrary code if an image with specially crafted EXIFdata is processed.

More info:

https://www.debian.org/security/2017/dsa-3825