Описание
LibRaw before 0.18.4 has a heap-based Buffer Overflow in the processCanonCameraInfo function via a crafted file.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | dcraw | Not affected | ||
| Red Hat Enterprise Linux 6 | dcraw | Not affected | ||
| Red Hat Enterprise Linux 7 | dcraw | Will not fix | ||
| Red Hat Enterprise Linux 7 | libkdcraw | Will not fix | ||
| Red Hat Enterprise Linux 7 | libraw | Will not fix |
Показывать по
10
Дополнительная информация
Статус:
Low
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=1492121libraw: Heap-based 1 byte buffer over-write in processCanonCameraInfo function in internal/dcraw_common.cpp
3.3 Low
CVSS3
Связанные уязвимости
CVSS3: 8.8
ubuntu
больше 8 лет назад
LibRaw before 0.18.4 has a heap-based Buffer Overflow in the processCanonCameraInfo function via a crafted file.
CVSS3: 8.8
nvd
больше 8 лет назад
LibRaw before 0.18.4 has a heap-based Buffer Overflow in the processCanonCameraInfo function via a crafted file.
CVSS3: 8.8
debian
больше 8 лет назад
LibRaw before 0.18.4 has a heap-based Buffer Overflow in the processCa ...
CVSS3: 8.8
github
больше 3 лет назад
LibRaw before 0.18.4 has a heap-based Buffer Overflow in the processCanonCameraInfo function via a crafted file.
3.3 Low
CVSS3