VYPR
High severity7.5NVD Advisory· Published May 22, 2017· Updated May 13, 2026

CVE-2017-9149

CVE-2017-9149

Description

Metadata Anonymisation Toolkit (MAT) 0.6 and 0.6.1 silently fails to perform "Clean metadata" actions upon invocation from the Nautilus contextual menu, which allows context-dependent attackers to obtain sensitive information by reading a file for which cleaning had been attempted.

Affected products

2
  • cpe:2.3:a:metadata_anonymisation_toolkit_project:metadata_anonymisation_toolkit:0.6:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:metadata_anonymisation_toolkit_project:metadata_anonymisation_toolkit:0.6:*:*:*:*:*:*:*
    • cpe:2.3:a:metadata_anonymisation_toolkit_project:metadata_anonymisation_toolkit:0.6.1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.