---
cve: "CVE-2026-40385"
severity: "MEDIUM"
cvss: 4.0
epss: "9%"
vendor: "libexif project"
kev: false
exploited: false
published: "2026-04-12 19:16:20"
tags: [cve, security, medium]
source: tsecurity.de CVE-Dossier
exported: "2026-09-17T12:47:01+02:00"
---

# CVE-2026-40385

> 4.0 MEDIUM · 🧪 PoC

## Beschreibung

In libexif through 0.6.25, an unsigned 32bit integer overflow in Nikon MakerNote handling could be used by local attackers to cause crashes or information leaks. This only affects 32bit systems.

## CVSS-Vektor

```
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Lokal | good |
| AC Komplexität | Hoch | good |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Gering | warn |
| I Integrität | Keine | good |
| A Verfügbarkeit | Gering | warn |

## Patch verfügbar (OSV)

- 93003b93e50b3d259bd2227d8775b73a53c35d58 (Commit)

## Referenzen

- <https://github.com/libexif/libexif/commit/93003b93e50b3d259bd2227d8775b73a53c35d58>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-40385) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
