CVE-2021-22204
Known Exploited (CISA KEV)MEDIUM
6.8
CVSS Severity Score
Vulnerability Description
Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up allows arbitrary code execution when parsing the malicious image
Affected Platforms (CPE)
π¦
Exiftool Project
Exiftool
>= 7.44 and < 12.24π»
Debian
Debian Linux
= 9.0π»
Debian
Debian Linux
= 10.0π»
Fedoraproject
Fedora
= 32π»
Fedoraproject
Fedora
= 33π»
Fedoraproject
