In libexif through 0.6.25, an unsigned 32bit integer overflow in Nikon MakerNote handling could be used by local attackers to cause crashes or information leaks. This only affects 32bit systems.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 12 Apr 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In libexif through 0.6.25, an unsigned 32bit integer overflow in Nikon MakerNote handling could be used by local attackers to cause crashes or information leaks. This only affects 32bit systems. | |
| First Time appeared |
Libexif Project
Libexif Project libexif |
|
| Weaknesses | CWE-190 | |
| CPEs | cpe:2.3:a:libexif_project:libexif:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Libexif Project
Libexif Project libexif |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-04-12T18:53:59.608Z
Reserved: 2026-04-12T18:16:29.829Z
Link: CVE-2026-40385
No data.
Status : Received
Published: 2026-04-12T19:16:20.480
Modified: 2026-04-12T19:16:20.480
Link: CVE-2026-40385
No data.
OpenCVE Enrichment
No data.
Weaknesses