Unrated severityNVD Advisory· Published Jul 28, 2011· Updated Apr 29, 2026
CVE-2011-2747
CVE-2011-2747
Description
Google Picasa before 3.6 Build 105.67 does not properly handle invalid properties in JPEG images, which allows remote attackers to execute arbitrary code via a crafted image file.
Affected products
10cpe:2.3:a:google:picasa:*:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:a:google:picasa:*:*:*:*:*:*:*:*range: <=3.6_build_105.65
- cpe:2.3:a:google:picasa:3.5:*:*:*:*:*:*:*
- cpe:2.3:a:google:picasa:3.5_build_79.67:*:*:*:*:*:*:*
- cpe:2.3:a:google:picasa:3.5_build_79.69:*:*:*:*:*:*:*
- cpe:2.3:a:google:picasa:3.5_build_79.74:*:*:*:*:*:*:*
- cpe:2.3:a:google:picasa:3.5_build_79.81:*:*:*:*:*:*:*
- cpe:2.3:a:google:picasa:3.5_build_95.18:*:*:*:*:*:*:*
- cpe:2.3:a:google:picasa:3.6_build_95.25:*:*:*:*:*:*:*
- cpe:2.3:a:google:picasa:3.6_build_105.41:*:*:*:*:*:*:*
- cpe:2.3:a:google:picasa:3.6_build_105.61:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.