libexif 0.6.16 and earlier allows context-dependent attackers to cause a denial of service (infinite recursion) via an image file with crafted EXIF tags, possibly involving the exif_loader_write function in exif_loader.c.
| Software | From | Fixed in |
|---|---|---|
| libexif_project / libexif | 0.6.14 | 0.6.14.x |
| libexif_project / libexif | 0.6.15 | 0.6.15.x |
| libexif_project / libexif | - | 0.6.16.x |