PT-2020-19192 · Jhead+5 · Jhead+5

Binbin Li

+1

·

Published

2020-01-09

·

Updated

2023-08-24

·

CVE-2020-6625

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions jhead versions prior to 3.04
Description The issue is related to a heap-based buffer over-read in the Get32s function when called from ProcessGpsInfo in gpsinfo.c.
Recommendations For versions prior to 3.04, update to version 3.04 or later to resolve the issue.

Exploit

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

ALT-PU-2021-1715
ALT-PU-2023-5099
CVE-2020-6625
MGASA-2021-0328
OPENSUSE-SU-2021:0743-1
OPENSUSE-SU-2021:0752-1
OPENSUSE-SU-2021_0743-1
USN-6098-1

Affected Products

Alt Linux
Debian
Linuxmint
Suse
Ubuntu
Jhead