A buffer overflow vulnerability in LibRaw version < 20.0 LibRaw::GetNormalizedModel in src/metadata/normalize_model.cpp may lead to context-dependent arbitrary code execution.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libraw-bin",
"binary_version": "0.17.1-1ubuntu0.5"
},
{
"binary_name": "libraw-bin-dbgsym",
"binary_version": "0.17.1-1ubuntu0.5"
},
{
"binary_name": "libraw-dev",
"binary_version": "0.17.1-1ubuntu0.5"
},
{
"binary_name": "libraw-doc",
"binary_version": "0.17.1-1ubuntu0.5"
},
{
"binary_name": "libraw15",
"binary_version": "0.17.1-1ubuntu0.5"
},
{
"binary_name": "libraw15-dbgsym",
"binary_version": "0.17.1-1ubuntu0.5"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libraw-bin",
"binary_version": "0.18.8-1ubuntu0.3"
},
{
"binary_name": "libraw-bin-dbgsym",
"binary_version": "0.18.8-1ubuntu0.3"
},
{
"binary_name": "libraw-dev",
"binary_version": "0.18.8-1ubuntu0.3"
},
{
"binary_name": "libraw-doc",
"binary_version": "0.18.8-1ubuntu0.3"
},
{
"binary_name": "libraw16",
"binary_version": "0.18.8-1ubuntu0.3"
},
{
"binary_name": "libraw16-dbgsym",
"binary_version": "0.18.8-1ubuntu0.3"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libraw-bin",
"binary_version": "0.19.5-1ubuntu1"
},
{
"binary_name": "libraw-bin-dbgsym",
"binary_version": "0.19.5-1ubuntu1"
},
{
"binary_name": "libraw-dev",
"binary_version": "0.19.5-1ubuntu1"
},
{
"binary_name": "libraw-doc",
"binary_version": "0.19.5-1ubuntu1"
},
{
"binary_name": "libraw19",
"binary_version": "0.19.5-1ubuntu1"
},
{
"binary_name": "libraw19-dbgsym",
"binary_version": "0.19.5-1ubuntu1"
}
]
}