Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-1438

Опубликовано: 19 янв. 2014
Источник: debian
EPSS Низкий

Описание

Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in libraw, ufraw, shotwell, and other products, allows context-dependent attackers to cause a denial of service via a crafted photo file that triggers a (1) divide-by-zero, (2) infinite loop, or (3) NULL pointer dereference.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
librawfixed0.15.4-1package
librawno-dsawheezypackage
librawno-dsasqueezepackage
libkdcrawfixed24.12.0-1package
libkdcrawno-dsawheezypackage
darktablefixed1.2.2-2package
darktablefixed1.0.4-1+deb7u2wheezypackage
dcrawfixed9.28-1package
ufrawfixed0.19.2-2package
ufrawno-dsawheezypackage
ufrawno-dsasqueezepackage
xbmcfixed2:13.2+dfsg1-5package
exactimagefixed0.8.9-1package
rawstudioremovedpackage
rawtherapeenot-affectedpackage

Примечания

  • Starting with 2:13.2+dfsg1-5 xbmc is a transitional package

  • Back in 2013, libkdcraw was fixed in 4:4.10.5-2 and later on removed and then

  • re-introduced in sid without the epoch, so now marking 24.12.0-1 as the first

  • upload to sid as the new fixed version, current libkdcraw uses the system-wide libraw

EPSS

Процентиль: 64%
0.00479
Низкий

Связанные уязвимости

ubuntu
около 12 лет назад

Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in libraw, ufraw, shotwell, and other products, allows context-dependent attackers to cause a denial of service via a crafted photo file that triggers a (1) divide-by-zero, (2) infinite loop, or (3) NULL pointer dereference.

redhat
больше 12 лет назад

Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in libraw, ufraw, shotwell, and other products, allows context-dependent attackers to cause a denial of service via a crafted photo file that triggers a (1) divide-by-zero, (2) infinite loop, or (3) NULL pointer dereference.

nvd
около 12 лет назад

Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in libraw, ufraw, shotwell, and other products, allows context-dependent attackers to cause a denial of service via a crafted photo file that triggers a (1) divide-by-zero, (2) infinite loop, or (3) NULL pointer dereference.

github
больше 3 лет назад

Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in libraw, ufraw, shotwell, and other products, allows context-dependent attackers to cause a denial of service via a crafted photo file that triggers a (1) divide-by-zero, (2) infinite loop, or (3) NULL pointer dereference.

fstec
больше 12 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 64%
0.00479
Низкий