Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-35534

Опубликовано: 26 апр. 2020
Источник: redhat
CVSS3: 5.5

Описание

In LibRaw, there is a memory corruption vulnerability within the "crxFreeSubbandData()" function (libraw\src\decoders\crx.cpp) when processing cr3 files.

A vulnerability was found in LibRaw. There is memory corruption within the "crxFreeSubbandData()" function (libraw\src\decoders\crx.cpp) when processing cr3 files.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libraw1394Out of support scope
Red Hat Enterprise Linux 7LibRawOut of support scope
Red Hat Enterprise Linux 7libraw1394Out of support scope
Red Hat Enterprise Linux 8LibRawFix deferred
Red Hat Enterprise Linux 8libraw1394Not affected
Red Hat Enterprise Linux 8libreoffice:flatpak/libraw1394Not affected
Red Hat Enterprise Linux 9LibRawNot affected
Red Hat Enterprise Linux 9libreoffice:flatpak/libraw1394Not affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2122360LibRaw: Memory corruption in "crxFreeSubbandData()" function

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 3 лет назад

In LibRaw, there is a memory corruption vulnerability within the "crxFreeSubbandData()" function (libraw\src\decoders\crx.cpp) when processing cr3 files.

CVSS3: 5.5
nvd
больше 3 лет назад

In LibRaw, there is a memory corruption vulnerability within the "crxFreeSubbandData()" function (libraw\src\decoders\crx.cpp) when processing cr3 files.

CVSS3: 5.5
debian
больше 3 лет назад

In LibRaw, there is a memory corruption vulnerability within the "crxF ...

CVSS3: 5.5
github
больше 3 лет назад

In LibRaw, there is a memory corruption vulnerability within the "crxFreeSubbandData()" function (libraw\src\decoders\crx.cpp) when processing cr3 files.

5.5 Medium

CVSS3