MGASA-2013-0301

Source
https://advisories.mageia.org/MGASA-2013-0301.html
Import Source
https://advisories.mageia.org/MGASA-2013-0301.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2013-0301
Related
Published
2013-10-09T22:39:51Z
Modified
2013-10-09T22:39:44Z
Summary
Updated libraw packages fix security vulnerabilities
Details

Updated libraw packages fix security vulnerabilities:

It was discovered that LibRaw incorrectly handled photo files. If a user or automated system were tricked into processing a specially crafted photo file, applications linked against LibRaw could be made to crash, resulting in a denial of service (CVE-2013-1438, CVE-2013-1439).

References
Credits

Affected packages

Mageia:2 / libraw

Package

Name
libraw
Purl
pkg:rpm/mageia/libraw?arch=source&distro=mageia-2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.14.5-1.2.mga2

Ecosystem specific

{
    "section": "core"
}

Mageia:3 / libraw

Package

Name
libraw
Purl
pkg:rpm/mageia/libraw?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.14.7-5.2.mga3

Ecosystem specific

{
    "section": "core"
}