Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-3624

Опубликовано: 18 апр. 2022
Источник: debian

Описание

There is an integer overflow vulnerability in dcraw. When the victim runs dcraw with a maliciously crafted X3F input image, arbitrary code may be executed in the victim's system.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dcrawfixed9.28-3package
dcrawno-dsabullseyepackage
dcrawno-dsabusterpackage
dcrawno-dsastretchpackage

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 4 года назад

There is an integer overflow vulnerability in dcraw. When the victim runs dcraw with a maliciously crafted X3F input image, arbitrary code may be executed in the victim's system.

CVSS3: 7.8
redhat
больше 4 лет назад

There is an integer overflow vulnerability in dcraw. When the victim runs dcraw with a maliciously crafted X3F input image, arbitrary code may be executed in the victim's system.

CVSS3: 7.8
nvd
почти 4 года назад

There is an integer overflow vulnerability in dcraw. When the victim runs dcraw with a maliciously crafted X3F input image, arbitrary code may be executed in the victim's system.

CVSS3: 7.8
github
почти 4 года назад

There is an integer overflow vulnerability in dcraw. When the victim runs dcraw with a maliciously crafted X3F input image, arbitrary code may be executed in the victim's system.

CVSS3: 6.7
fstec
больше 4 лет назад

Уязвимость функции foveon_load_camf() raw‐конвертера dcraw, позволяющая нарушителю выполнить произвольный код