Security Advisories (1)
CVE-2022-23935 (2022-01-25)

lib/Image/ExifTool.pm in ExifTool before 12.38 mishandles a $file =~ /\|$/ check, leading to command injection.

NAME

Image::ExifTool::WriteQuickTime.pl - Write XMP to QuickTime (MOV and MP4) files

SYNOPSIS

These routines are autoloaded by Image::ExifTool::QuickTime.

DESCRIPTION

This file contains routines used by ExifTool to write XMP metadata to QuickTime-based file formats like MOV and MP4.

AUTHOR

Copyright 2003-2021, Phil Harvey (philharvey66 at gmail.com)

This library is free software; you can redistribute it and/or modify it under the same terms as Perl itself.

SEE ALSO

Image::ExifTool::QuickTime(3pm), Image::ExifTool(3pm)