CVE-2026-38332 | cdcseacave TinyEXIF up to 1.0.x EntryParser EntryParser::Fetch SubjectArea heap-based overflow

SecurityVulns

A vulnerability was found in cdcseacave TinyEXIF up to 1.0.x. It has been rated as critical. Affected is the function EntryParser::Fetch of the component EntryParser. Performing a manipulation of the argument SubjectArea results in heap-based buffer overflow.

This vulnerability is reported as CVE-2026-38332. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More