libgphoto2是gPhoto开源的一个数码相机访问与控制库。 libgphoto2 2.5.33及之前版本存在安全漏洞,该漏洞源于ptp_unpack_EOS_FocusInfoEx函数存在越界读取,可能导致处理不受信任USB设备输入时崩溃。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| gphoto | libgphoto2 | <= 2.5.33 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-40340 | 6.1 MEDIUM | libgphoto2 has OOB read in ptp_unpack_OI() in ptp-pack.c via malicious PTP ObjectInfo resp |
| CVE-2026-40333 | 6.1 MEDIUM | libgphoto2 has OOB read in ptp_unpack_EOS_ImageFormat() and ptp_unpack_EOS_CustomFuncEx() |
| CVE-2026-40339 | 5.2 MEDIUM | libgphoto2 has OOB read in ptp_unpack_Sony_DPD() FormFlag parsing in ptp-pack.c |
| CVE-2026-40338 | 5.2 MEDIUM | libgphoto2 has OOB read in ptp_unpack_Sony_DPD() enumeration count parsing in ptp-pack.c |
| CVE-2026-40335 | 5.2 MEDIUM | libgphoto2 has OOB read in ptp_unpack_DPV() UINT128/INT128 handling in ptp-pack.c |
| CVE-2026-40334 | 3.5 LOW | libgphoto2 missing null termination in ptp_unpack_Canon_FE() filename buffer in ptp-pack.c |
| CVE-2026-40336 | 2.4 LOW | libgphoto2 has memory leak in ptp_unpack_Sony_DPD() secondary enumeration list in ptp-pack |
No comments yet