Lucene search

K
cvelistFlexeraCVELIST:CVE-2018-5816
HistoryDec 07, 2018 - 10:00 p.m.

CVE-2018-5816

2018-12-0722:00:00
flexera
www.cve.org
5

AI Score

6.6

Confidence

High

EPSS

0.003

Percentile

70.5%

An integer overflow error within the “identify()” function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.12 can be exploited to trigger a division by zero via specially crafted NOKIARAW file (Note: This vulnerability is caused due to an incomplete fix of CVE-2018-5804).

CNA Affected

[
  {
    "product": "LibRaw",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Prior to 0.18.12"
      }
    ]
  }
]

AI Score

6.6

Confidence

High

EPSS

0.003

Percentile

70.5%