In LibRaw, an out-of-bounds read vulnerability exists within the "LibRaw::adobecopypixel()" function (libraw\src\decoders\dng.cpp) when reading data from the image file.
[
{
"deprecated": false,
"source": "https://github.com/libraw/libraw/commit/a6937d4046a7c4742b683a04c8564605fd9be4fb",
"id": "CVE-2020-35533-a8673144",
"signature_version": "v1",
"target": {
"function": "LibRaw::ljpeg_start",
"file": "src/decoders/decoders_dcraw.cpp"
},
"signature_type": "Function",
"digest": {
"function_hash": "189786397465748804224571890318419266390",
"length": 2037.0
}
},
{
"deprecated": false,
"source": "https://github.com/libraw/libraw/commit/a6937d4046a7c4742b683a04c8564605fd9be4fb",
"id": "CVE-2020-35533-bac3dcfc",
"signature_version": "v1",
"target": {
"file": "src/decoders/decoders_dcraw.cpp"
},
"signature_type": "Line",
"digest": {
"line_hashes": [
"169956838837957557109730059690174096609",
"107773701374697699447354895927828660976",
"24066560648351270888693131467014129179",
"214774432034343772806029105558014034099"
],
"threshold": 0.9
}
}
]