A
flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
21 Nov 2024, 07:39
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2188240 - Issue Tracking, Patch, Third Party Advisory | |
| References | () https://github.com/LibRaw/LibRaw/issues/557 - Exploit, Issue Tracking, Patch, Third Party Advisory | |
| References | () https://lists.debian.org/debian-lts-announce/2023/05/msg00025.html - Mailing List, Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AGZ6XF5WTPJ4GLXQ62JVRDZSVSJHXNQU/ - Mailing List, Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/E5ZJ3UBTJBZHNPJQFOSGM5L7WAHHE2GY/ - Mailing List, Third Party Advisory | |
| References | () https://security.gentoo.org/glsa/202312-08 - Third Party Advisory | |
| References | () https://www.debian.org/security/2023/dsa-5412 - Third Party Advisory |
10 Jul 2024, 14:27
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://lists.debian.org/debian-lts-announce/2023/05/msg00025.html - Mailing List, Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AGZ6XF5WTPJ4GLXQ62JVRDZSVSJHXNQU/ - Mailing List, Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/E5ZJ3UBTJBZHNPJQFOSGM5L7WAHHE2GY/ - Mailing List, Third Party Advisory | |
| References | () https://security.gentoo.org/glsa/202312-08 - Third Party Advisory | |
| References | () https://www.debian.org/security/2023/dsa-5412 - Third Party Advisory |
Information
Published : 2023-05-15 22:15
Updated : 2025-03-20 17:01
NVD link : CVE-2023-1729
Mitre link : CVE-2023-1729
CVE.ORG link : CVE-2023-1729
JSON object : View
Products Affected