USN-5483-1: Exempi vulnerabilities
16 June 2022
Several security issues were fixed in Exempi.
Releases
Packages
- exempi - library to parse XMP metadata
Details
It was discovered that Exempi incorrectly handled certain media files. If a
user or automated system were tricked into opening a specially crafted
file, a remote attacker could cause Exempi to stop responding or crash,
resulting in a denial of service, or possibly execute arbitrary code.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 22.04
Ubuntu 21.10
Ubuntu 20.04
Ubuntu 18.04
In general, a standard system update will make all the necessary changes.
References
- CVE-2021-36048
- CVE-2021-39847
- CVE-2021-42530
- CVE-2021-36046
- CVE-2021-36055
- CVE-2021-40716
- CVE-2018-12648
- CVE-2021-36054
- CVE-2021-36047
- CVE-2021-36052
- CVE-2021-36058
- CVE-2021-36045
- CVE-2021-42531
- CVE-2021-36064
- CVE-2021-42529
- CVE-2021-42528
- CVE-2021-36050
- CVE-2021-40732
- CVE-2021-36056
- CVE-2021-42532
- CVE-2021-36053
- CVE-2021-36051