CVE-2015-8367
14.01.2020, 16:15
The phase_one_correct function in Libraw before 0.17.1 allows attackers to cause memory errors and possibly execute arbitrary code, related to memory object initialization.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| libraw | libraw | 𝑥 < 0.17.1 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| darktable |
| ||||||||||||||||
| dcraw |
| ||||||||||||||||
| exactimage |
| ||||||||||||||||
| kodi |
| ||||||||||||||||
| libraw |
| ||||||||||||||||
| rawtherapee |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| exactimage |
| ||||||||||||||||||||||||||||||||||||||||||||||||||
| rawtherapee |
| ||||||||||||||||||||||||||||||||||||||||||||||||||
| kodi |
| ||||||||||||||||||||||||||||||||||||||||||||||||||
| darktable |
| ||||||||||||||||||||||||||||||||||||||||||||||||||
| dcraw |
| ||||||||||||||||||||||||||||||||||||||||||||||||||
| libraw |
| ||||||||||||||||||||||||||||||||||||||||||||||||||
| ufraw |
| ||||||||||||||||||||||||||||||||||||||||||||||||||
| xbmc |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libraw-devel |
| ||||||||||||||||||||||||||||||||||||||||||||
| libraw-devel-static |
| ||||||||||||||||||||||||||||||||||||||||||||
| libraw16 |
|
Common Weakness Enumeration
References