CVE Vulnerabilities

CVE-2015-3885

Published: May 19, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 LOW
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
NEGLIGIBLE
root.io logo minimus.io logo echo.ai logo

Integer overflow in the ljpeg_start function in dcraw 7.00 and earlier allows remote attackers to cause a denial of service (crash) via a crafted image, which triggers a buffer overflow, related to the len variable.

Affected Software

NameVendorStart VersionEnd Version
DcrawDcraw_project*7.00 (including)
DarktableUbuntuprecise*
DarktableUbuntutrusty*
DarktableUbuntuupstream*
DarktableUbuntuutopic*
DarktableUbuntuvivid*
DcrawUbuntuartful*
DcrawUbuntuesm-apps/xenial*
DcrawUbuntuprecise*
DcrawUbuntutrusty*
DcrawUbuntuupstream*
DcrawUbuntuutopic*
DcrawUbuntuvivid*
DcrawUbuntuwily*
DcrawUbuntuxenial*
DcrawUbuntuyakkety*
DcrawUbuntuzesty*
ExactimageUbuntuartful*
ExactimageUbuntuprecise*
ExactimageUbuntutrusty*
ExactimageUbuntuupstream*
ExactimageUbuntuutopic*
ExactimageUbuntuvivid*
ExactimageUbuntuwily*
ExactimageUbuntuyakkety*
ExactimageUbuntuzesty*
FreeimageUbuntuartful*
FreeimageUbuntuesm-infra-legacy/trusty*
FreeimageUbuntuprecise*
FreeimageUbuntutrusty*
FreeimageUbuntutrusty/esm*
FreeimageUbuntuupstream*
FreeimageUbuntuutopic*
FreeimageUbuntuvivid*
FreeimageUbuntuwily*
FreeimageUbuntuyakkety*
FreeimageUbuntuzesty*
KodiUbuntuartful*
KodiUbuntuesm-apps/xenial*
KodiUbuntuupstream*
KodiUbuntuwily*
KodiUbuntuxenial*
KodiUbuntuyakkety*
KodiUbuntuzesty*
LibrawUbuntuprecise*
LibrawUbuntutrusty*
LibrawUbuntuupstream*
LibrawUbuntuutopic*
LibrawUbuntuvivid*
LibrawUbuntuwily*
RawstudioUbuntuprecise*
RawstudioUbuntutrusty*
RawstudioUbuntuupstream*
RawtherapeeUbuntuprecise*
RawtherapeeUbuntutrusty*
RawtherapeeUbuntuupstream*
RawtherapeeUbuntuutopic*
RawtherapeeUbuntuvivid*
RawtherapeeUbuntuwily*
UfrawUbuntuartful*
UfrawUbuntuprecise*
UfrawUbuntutrusty*
UfrawUbuntuupstream*
UfrawUbuntuutopic*
UfrawUbuntuvivid*
UfrawUbuntuwily*
UfrawUbuntuyakkety*
UfrawUbuntuzesty*
XbmcUbuntuprecise*
XbmcUbuntutrusty*
XbmcUbuntuupstream*
XbmcUbuntuutopic*
XbmcUbuntuvivid*
XbmcUbuntuyakkety*

References