An off-by-one error within the "LibRaw::kodakycbcrloadraw()" function (internal/dcrawcommon.cpp) in LibRaw versions prior to 0.18.7 can be exploited to cause a heap-based buffer overflow and subsequently cause a crash.
{ "urgency": "not yet assigned" }