Ubuntu Security Notice 478-1 – Sean Larsson discovered that libexif did not correctly verify the size of EXIF components. By tricking a user into opening an image with specially crafted EXIF headers, a remote attacker could cause the application using libexif to execute arbitrary code with user privileges.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/57330/USN-478-1.txt
Source: https://packetstormsecurity.com/files/57330/Ubuntu-Security-Notice-478-1.html

