CVE-2020-35532
01.09.2022, 18:15
In LibRaw, an out-of-bounds read vulnerability exists within the "simple_decode_row()" function (libraw\src\x3f\x3f_utils_patched.cpp) which can be triggered via an image with a large row_stride field.Enginsight
Vendor | Product | Version |
---|---|---|
libraw | libraw | 0.20.0 |
libraw | libraw | 0.20.0:rc2 |
libraw | libraw | 0.20.1 |
libraw | libraw | 0.20.2 |
libraw | libraw | 0.21.0:beta1 |
debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
darktable |
| ||||||||||||||||||
dcraw |
| ||||||||||||||||||
digikam |
| ||||||||||||||||||
exactimage |
| ||||||||||||||||||
kodi |
| ||||||||||||||||||
libraw |
| ||||||||||||||||||
rawtherapee |
| ||||||||||||||||||
ufraw |
| ||||||||||||||||||
xbmc |
|
Common Weakness Enumeration
References