[ALSA-2026:22553] Moderate: libexif security update
Type:
security
Severity:
moderate
Release date:
2026-06-03
Description:
The libexif packages provide a library for extracting extra information from image files. Security Fix(es): * libexif: libexif: Information disclosure and crashes via integer overflow in Nikon MakerNote handling (CVE-2026-40385) * libexif: libexif: Denial of Service and information disclosure via integer underflow in MakerNote decoding (CVE-2026-40386) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libexif-0.6.22-6.el9_8.1.aarch64.rpm 63dd2c104917eab19faea130f0b4ec711186b748243f154c611c9312b1790919
aarch64 libexif-devel-0.6.22-6.el9_8.1.aarch64.rpm d202fcd01b3bbc602cfd2a2db6e8ae680f8f05c8e8c629315fb0b996a440d203
i686 libexif-0.6.22-6.el9_8.1.i686.rpm 7d29c31bfa40af39791ac2b1830b876234cb443f6a740d6acddc183a40ffd941
i686 libexif-devel-0.6.22-6.el9_8.1.i686.rpm c30b9e695a463e5440cb63b9969fe61a5fe1daf0c9ab0a30a49ed3dc6eb9165e
ppc64le libexif-0.6.22-6.el9_8.1.ppc64le.rpm a229cb70e77d84e0fd6a4376a26c85e0a43adbc1f138583fe895138ddb08e118
ppc64le libexif-devel-0.6.22-6.el9_8.1.ppc64le.rpm a4776d86b8df6c1b313187a81ed09976e3b1f6e6ab7a006e6c092f773c545431
s390x libexif-0.6.22-6.el9_8.1.s390x.rpm 685a30dd82ea502c22c0fed2889000e9023541ac1a3bf569fcee365906d08194
s390x libexif-devel-0.6.22-6.el9_8.1.s390x.rpm e4b3ed8fd2d6176b3e8a05e4af43c0bbe41e74454e9df94725bbf6f348ab74e8
x86_64 libexif-0.6.22-6.el9_8.1.x86_64.rpm 4fdf858725c87ca8108f4bcef19270202f124ba90d5ee5be1552a80d693c6332
x86_64 libexif-devel-0.6.22-6.el9_8.1.x86_64.rpm b8b1802a8e4277a83e9952f18f76438adb20f0e0165ba1a2165f93edb534af3e
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.