CVE-2025-43964
EUVD-2025-1195921.04.2025, 00:15
In LibRaw before 0.21.4, tag 0x412 processing in phase_one_correct in decoders/load_mfbacks.cpp does not enforce minimum w0 and w1 values.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| libraw | libraw | 𝑥 < 0.21.4 |
𝑥
= Vulnerable software versions
Debian Releases