摘要:
In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.
安全等级: Low
公告ID: KylinSec-SA-2022-2038
发布日期: 2022年9月23日
关联CVE: CVE-2020-35530
In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.
cve名称 | 产品 | 组件 | 是否受影响 |
---|---|---|---|
CVE-2020-35530 | KY3.4-4A | LibRaw | Unaffected |
CVE-2020-35530 | KY3.4-5 | LibRaw | Unaffected |
CVE-2020-35530 | KY3.5.1 | LibRaw | Unaffected |