Ubuntu Security Notice 654-1 – Meder Kydyraliev discovered that libexif did not correctly handle certain EXIF headers. If a user or automated system were tricked into processing a specially crafted image, a remote attacker could cause the application linked against libexif to crash, leading to a denial of service, or possibly executing arbitrary code with user privileges.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/70943/USN-654-1.txt
Source: https://packetstormsecurity.com/files/70943/Ubuntu-Security-Notice-654-1.html

