ZeroHour

CVE-2026-40385

CVSS 3.1
7.1 high
EPSS
<1%p1
Published
()
Modified
Description

In libexif through 0.6.25, an unsigned 32bit integer overflow in Nikon MakerNote handling could be used by local attackers to cause crashes or information leaks. This only affects 32bit systems.

Vendors
libexif project
Products
libexif
Weakness
CWE-190
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

In the news

No ingested article mentions this CVE yet.