CVE Vulnerabilities

CVE-2013-1439

Published: Sep 16, 2013 | Modified: Nov 15, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The faster LJPEG decoder in libraw 0.13.x, 0.14.x, and 0.15.x before 0.15.4 allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a crafted photo file.

Affected Software

Name Vendor Start Version End Version
Libraw Libraw 0.13.0 (including) 0.13.0 (including)
Libraw Libraw 0.13.1 (including) 0.13.1 (including)
Libraw Libraw 0.13.2 (including) 0.13.2 (including)
Libraw Libraw 0.13.3 (including) 0.13.3 (including)
Libraw Libraw 0.13.4 (including) 0.13.4 (including)
Libraw Libraw 0.13.5 (including) 0.13.5 (including)
Libraw Libraw 0.13.6 (including) 0.13.6 (including)
Libraw Libraw 0.13.7 (including) 0.13.7 (including)
Libraw Libraw 0.13.8 (including) 0.13.8 (including)
Libraw Libraw 0.14.0 (including) 0.14.0 (including)
Libraw Libraw 0.14.1 (including) 0.14.1 (including)
Libraw Libraw 0.14.2 (including) 0.14.2 (including)
Libraw Libraw 0.14.3 (including) 0.14.3 (including)
Libraw Libraw 0.14.4 (including) 0.14.4 (including)
Libraw Libraw 0.14.5 (including) 0.14.5 (including)
Libraw Libraw 0.14.6 (including) 0.14.6 (including)
Libraw Libraw 0.14.7 (including) 0.14.7 (including)
Libraw Libraw 0.15.0 (including) 0.15.0 (including)
Libraw Libraw 0.15.1 (including) 0.15.1 (including)
Libraw Libraw 0.15.2 (including) 0.15.2 (including)
Libraw Libraw 0.15.3 (including) 0.15.3 (including)

References