CVE-2020-35532
01.09.2022, 18:15
In LibRaw, an out-of-bounds read vulnerability exists within the "simple_decode_row()" function (libraw\src\x3f\x3f_utils_patched.cpp) which can be triggered via an image with a large row_stride field.Enginsight
| Vendor | Product | Version |
|---|---|---|
| libraw | libraw | 0.20.0 |
| libraw | libraw | 0.20.0:rc2 |
| libraw | libraw | 0.20.1 |
| libraw | libraw | 0.20.2 |
| libraw | libraw | 0.21.0:beta1 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| darktable |
| ||||||||||||||||||
| dcraw |
| ||||||||||||||||||
| digikam |
| ||||||||||||||||||
| exactimage |
| ||||||||||||||||||
| kodi |
| ||||||||||||||||||
| libraw |
| ||||||||||||||||||
| rawtherapee |
| ||||||||||||||||||
| ufraw |
| ||||||||||||||||||
| xbmc |
|
Common Weakness Enumeration
References