VYPR
Unrated severityNVD Advisory· Published Jul 28, 2011· Updated Apr 29, 2026

CVE-2011-2747

CVE-2011-2747

Description

Google Picasa before 3.6 Build 105.67 does not properly handle invalid properties in JPEG images, which allows remote attackers to execute arbitrary code via a crafted image file.

Affected products

10
  • Google/Picasa10 versions
    cpe:2.3:a:google:picasa:*:*:*:*:*:*:*:*+ 9 more
    • cpe:2.3:a:google:picasa:*:*:*:*:*:*:*:*range: <=3.6_build_105.65
    • cpe:2.3:a:google:picasa:3.5:*:*:*:*:*:*:*
    • cpe:2.3:a:google:picasa:3.5_build_79.67:*:*:*:*:*:*:*
    • cpe:2.3:a:google:picasa:3.5_build_79.69:*:*:*:*:*:*:*
    • cpe:2.3:a:google:picasa:3.5_build_79.74:*:*:*:*:*:*:*
    • cpe:2.3:a:google:picasa:3.5_build_79.81:*:*:*:*:*:*:*
    • cpe:2.3:a:google:picasa:3.5_build_95.18:*:*:*:*:*:*:*
    • cpe:2.3:a:google:picasa:3.6_build_95.25:*:*:*:*:*:*:*
    • cpe:2.3:a:google:picasa:3.6_build_105.41:*:*:*:*:*:*:*
    • cpe:2.3:a:google:picasa:3.6_build_105.61:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.