Hi, there is just another CVE id for exiftags: CVE-2007-6354[0]: | Unspecified vulnerability in exiftags before 1.01 has | unknown impact and attack vectors, resulting from a "field | offset overflow," a different vulnerability than | CVE-2007-6355.
Please check back with upstream for the difference to CVE-2007-6355. I had a quick look at the source changes and its not obvious what the difference should be. [0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6354 Kind regards Nico -- Nico Golde - http://www.ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted.
pgpGl7H9OWP0O.pgp
Description: PGP signature