📦 Libraw

by Libraw

🔍 What is Libraw?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2015-8366

CRITICAL CVSS 9.8 Jan 14, 2020

This is a critical memory corruption vulnerability in LibRaw's smal_decode_segment function caused by improper array index validation. Attackers can exploit this to cause denial of service, memory cor...

CVE-2020-24870

HIGH CVSS 8.8 Jun 2, 2021

CVE-2020-24870 is a stack buffer overflow vulnerability in LibRaw's DNG file processing that allows remote code execution. Attackers can exploit this by tricking users into opening malicious DNG image...

CVE-2020-24889

HIGH CVSS 7.8 Sep 16, 2020

A buffer overflow vulnerability in LibRaw's GetNormalizedModel function allows attackers to execute arbitrary code by providing specially crafted image files. This affects any application using LibRaw...

CVE-2020-15503

HIGH CVSS 7.5 Jul 2, 2020

CVE-2020-15503 is an integer overflow vulnerability in LibRaw's thumbnail processing code that allows attackers to cause heap-based buffer overflows by providing specially crafted image files. This af...