- -------------------------------------------------------------------------
Debian Security Advisory DSA-4910-1                   security@debian.org
https://www.debian.org/security/                     Salvatore Bonaccorso
May 02, 2021                          https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : libimage-exiftool-perl
CVE ID         : CVE-2021-22204
Debian Bug     : 987505

A vulnerability was discovered in libimage-exiftool-perl, a library and
program to read and write meta information in multimedia files, which
may result in execution of arbitrary code if a malformed DjVu file is
processed.

For the stable distribution (buster), this problem has been fixed in
version 11.16-1+deb10u1.

We recommend that you upgrade your libimage-exiftool-perl packages.

For the detailed security status of libimage-exiftool-perl please refer
to its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/libimage-exiftool-perl

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org

Debian: DSA-4910-1: libimage-exiftool-perl security update

May 2, 2021
A vulnerability was discovered in libimage-exiftool-perl, a library and program to read and write meta information in multimedia files, which may result in execution of arbitrary c...

Summary

For the stable distribution (buster), this problem has been fixed in
version 11.16-1+deb10u1.

We recommend that you upgrade your libimage-exiftool-perl packages.

For the detailed security status of libimage-exiftool-perl please refer
to its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/libimage-exiftool-perl

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org

Severity
A vulnerability was discovered in libimage-exiftool-perl, a library and
program to read and write meta information in multimedia files, which
may result in execution of arbitrary code if a malformed DjVu file is
processed.

Related News