Description
A vulnerability was determined in exiftool up to 13.49 on macOS. This issue affects the function SetMacOSTags of the file lib/Image/ExifTool/MacOS.pm of the component PNG File Parser. This manipulation of the argument DateTimeOriginal causes os command injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 13.50 is capable of addressing this issue. Patch name: e9609a9bcc0d32bd252a709a562fb822d6dd86f7. Upgrading the affected component is recommended.
INFO
Published Date :
2026-02-24T14:32:13.272Z
Last Modified :
2026-02-27T19:01:01.682Z
Source :
VulDB
AFFECTED PRODUCTS
The following products are affected by CVE-2026-3102 vulnerability.
| Vendors | Products |
|---|---|
| Apple |
|
| Exiftool Project |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2026-3102.