Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32952
HistoryNov 14, 2021 - 12:40 a.m.

Denial Of Service (DoS)

2021-11-1400:40:44
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
denial of service
libraw
vulnerable
buffer overflow
crafted image
code execution

EPSS

0.003

Percentile

68.1%

LibRaw is vulnerable to denial of service. It not supposed to be used in RHEL by network-facing applications, thus reducing the impact of this flaw. A stack buffer overflow vulnerability was found in LibRaw. This flaw allows a malicious user to send a crafted image that, when parsed by an application linked to LibRaw, leads to a denial of service or potential code execution.