In LibRaw, an out-of-bounds read vulnerability exists within the "LibRaw::adobe_copy_pixel()" function (libraw\src\decoders\dng.cpp) when reading data from the image file.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://github.com/LibRaw/LibRaw/issues/273 | issue tracking third party advisory patch |
https://github.com/LibRaw/LibRaw/commit/a6937d4046a7c4742b683a04c8564605fd9be4fb | third party advisory patch |
https://lists.debian.org/debian-lts-announce/2022/09/msg00024.html | third party advisory mailing list |