INFSA-2024:2137: LibRaw security update

Information about definition

Identificator: INFSA-2024:2137

Type: security

Release date: 2024-12-27 09:40:24 UTC

Information about package

LibRaw is a library for reading RAW files obtained from digital photo cameras (CRW/CR2, NEF, RAF, DNG, and others).

Vulnerabilities description

  • CVE-2023-1729

    A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.

Severity level

CVE Score CVSS 2.0 Score CVSS 3.x Score CVSS 4.0
NIST — CVE-2023-1729
no information 3.3 no information
Critical, important, moderate, low

Updated packages