"May 20, 2021 - Version 12.26 (production release) Added support for JPEG Stereo (JPS) images Added a new Sony LensType (thanks LibRaw) Added a new PentaxModelID (thanks LibRaw) Changed ExifTool namespace URI to use exiftool.org instead of exiftool.ca in the -X option output (exiftool.ca is still recognized when reading XML) Improved handling of large-array warnings in -htmldump output Changed handling of escaped characters in #[CSTR] lines of -@ argfile Patched security vulnerability in argument of -lang option Fixed problem which could cause a "Wide character" warning and generate a corrupted output file when writing some illegal values"
I assume this is the related hunk: https://github.com/exiftool/exiftool/commit/bd14871e8a3bc2b15ea2e3d5dd22bec4f50a6a40#diff-0afd0dd17de0020506564721e0651d8b1534d063583023fb241fc7f9f34ffd02R2088
amd64 stable
x86 stable
arm64 done
ppc64 done
ppc done all arches done
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=5b20f7125508f3a30f11bbb08f89ee86ad68d28e commit 5b20f7125508f3a30f11bbb08f89ee86ad68d28e Author: Andreas K. Hüttel <dilfridge@gentoo.org> AuthorDate: 2021-05-30 20:34:41 +0000 Commit: Andreas K. Hüttel <dilfridge@gentoo.org> CommitDate: 2021-05-30 21:00:51 +0000 media-libs/exiftool: Remove old Bug: https://bugs.gentoo.org/791397 Package-Manager: Portage-3.0.18, Repoman-3.0.2 Signed-off-by: Andreas K. Hüttel <dilfridge@gentoo.org> media-libs/exiftool/Manifest | 1 - media-libs/exiftool/exiftool-12.16-r1.ebuild | 27 ------------------- .../files/exiftool-12.16-CVE-2021-22204.patch | 30 ---------------------- 3 files changed, 58 deletions(-)
Unable to check for sanity: > no match for package: media-libs/exiftool-12.26
cleanup done
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/data/glsa.git/commit/?id=cbb2c6bdcf7c6bcf9d999c22c28ef4eb416b0a51 commit cbb2c6bdcf7c6bcf9d999c22c28ef4eb416b0a51 Author: GLSAMaker <glsamaker@gentoo.org> AuthorDate: 2024-07-24 06:08:31 +0000 Commit: Hans de Graaff <graaff@gentoo.org> CommitDate: 2024-07-24 06:08:44 +0000 [ GLSA 202407-27 ] ExifTool: Multiple vulnerabilities Bug: https://bugs.gentoo.org/785667 Bug: https://bugs.gentoo.org/791397 Bug: https://bugs.gentoo.org/803317 Bug: https://bugs.gentoo.org/832033 Signed-off-by: GLSAMaker <glsamaker@gentoo.org> Signed-off-by: Hans de Graaff <graaff@gentoo.org> glsa-202407-27.xml | 46 ++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 46 insertions(+)