Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-32775

26
FAUCET Score

CVE-2026-32775 identifies an integer underflow vulnerability in libexif versions through 0.6.25, specifically within the exif_mnote_data_get_value function when processing zero-sized MakerNotes data, which can lead to a buffer overwrite. This flaw carries a CVSS score of 7.4 High, indicating that while it requires local access and high attack complexity, successful exploitation could result in a complete loss of confidentiality, integrity, and availability. There is currently no evidence of active exploitation, public exploit code, or significant community discussion, with its EPSS score suggesting a very low probability of exploitation.

Impacted Technologies

VendorProductVersion(s)CPE
>= 0, <= 0.6.25CPE match
cpe:2.3:a:libexif_project:libexif:*:*:*:*:*:*:*:*
<= 0.6.25CPE matchmatch criteria
cpe:2.3:a:libexif_project:libexif:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.4HIGH

CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.4
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.19%
Probability of exploitation in next 30 days
EPSS Percentile
9.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0019 is in the 7th percentile among its peer group of 11,616 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (10)

github_advisorypatch availablevia nvd_reference
View patch
microsoftpatch availablevia msrc
Product: 21131-17086Fixed in: 0.6.24-2
microsoftpatch availablevia msrc
Product: azl3 libexif 0.6.24-1 on Azure Linux 3.0Fixed in: 0.6.24-2
microsoftpatch availablevia msrc
Product: cbl2 libexif 0.6.24-1 on CBL Mariner 2.0Fixed in: 0.6.24-2
microsoftpatch availablevia msrc
Product: cbl2 libexif 0.6.24-2 on CBL Mariner 2.0Fixed in: 0.6.24-2
microsoftpatch availablevia msrc
Product: 21065-17086Fixed in: 0.6.24-2
microsoftpatch availablevia msrc
Product: 21058-17084Fixed in: 0.6.24-2
ubuntupatch availablevia ubuntu_usn
Product: libexif (jammy)Fixed in: 0.6.24-1ubuntu0.22.04.1
ubuntupatch availablevia ubuntu_usn
Product: libexif (noble)Fixed in: 0.6.24-1ubuntu0.24.04.1
ubuntupatch availablevia ubuntu_usn
Product: libexif (resolute)Fixed in: 0.6.25-2ubuntu0.1

Vendor Advisories (2)

ubuntuUSN-8531-1

libexif vulnerabilities

Jul 13, 2026
microsoft2026-Mar/CVE-2026-32775Important

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

Mar 10, 2026

References

github.com / libexif/libexif/commit/7df372e9d31d7c993a22b913c813a5f7ec4f3692
Patch
github.com / libexif/libexif/issues/247
ExploitIssue TrackingVendor Advisory