Описание
LibRaw::raw2image() in libraw_cxx.cpp has a heap-based buffer overflow.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libraw | fixed | 0.19.2-2 | package | |
| libraw | not-affected | jessie | package |
Примечания
https://github.com/LibRaw/LibRaw/issues/195
Fixed by: https://github.com/LibRaw/LibRaw/commit/7e29b9f29449fde30cc878fbb137d61c14bba3a4
Additionally needed: https://github.com/LibRaw/LibRaw/commit/a7c17cb6bbec1e79f058d84511f9c3b142cbdfa7
CVE-2018-20363, CVE-2018-20364 and CVE-2018-20365 have same root cause
Связанные уязвимости
LibRaw::raw2image() in libraw_cxx.cpp has a heap-based buffer overflow.
LibRaw::raw2image() in libraw_cxx.cpp has a heap-based buffer overflow.
LibRaw::raw2image() in libraw_cxx.cpp has a heap-based buffer overflow.
LibRaw::raw2image() in libraw_cxx.cpp has a heap-based buffer overflow.
Уязвимость функции LibRaw::raw2image() компонента libraw_cxx.cpp библиотеки для обработки изображений LibRaw, позволяющая нарушителю вызвать отказ в обслуживании