In LibRaw, an out-of-bounds read vulnerability exists within the get_huffman_diff() function (librawsrcx3fx3f_utils_patched.cpp) when reading data from an image file.
The product reads data past the end, or before the beginning, of the intended buffer.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Libraw | Libraw | 0.20.0 (including) | 0.20.0 (including) |
| Libraw | Libraw | 0.20.0-rc2 (including) | 0.20.0-rc2 (including) |
| Libraw | Libraw | 0.20.1 (including) | 0.20.1 (including) |
| Libraw | Libraw | 0.20.2 (including) | 0.20.2 (including) |
| Libraw | Libraw | 0.21.0-beta1 (including) | 0.21.0-beta1 (including) |
| Darktable | Ubuntu | bionic | * |
| Darktable | Ubuntu | focal | * |
| Darktable | Ubuntu | kinetic | * |
| Darktable | Ubuntu | lunar | * |
| Darktable | Ubuntu | mantic | * |
| Darktable | Ubuntu | oracular | * |
| Darktable | Ubuntu | trusty | * |
| Darktable | Ubuntu | xenial | * |
| Dcraw | Ubuntu | bionic | * |
| Dcraw | Ubuntu | focal | * |
| Dcraw | Ubuntu | kinetic | * |
| Dcraw | Ubuntu | lunar | * |
| Dcraw | Ubuntu | mantic | * |
| Dcraw | Ubuntu | oracular | * |
| Dcraw | Ubuntu | trusty | * |
| Dcraw | Ubuntu | xenial | * |
| Digikam | Ubuntu | bionic | * |
| Digikam | Ubuntu | esm-apps/bionic | * |
| Digikam | Ubuntu | esm-apps/focal | * |
| Digikam | Ubuntu | focal | * |
| Digikam | Ubuntu | kinetic | * |
| Digikam | Ubuntu | lunar | * |
| Digikam | Ubuntu | mantic | * |
| Digikam | Ubuntu | trusty | * |
| Digikam | Ubuntu | upstream | * |
| Digikam | Ubuntu | xenial | * |
| Exactimage | Ubuntu | bionic | * |
| Exactimage | Ubuntu | focal | * |
| Exactimage | Ubuntu | kinetic | * |
| Exactimage | Ubuntu | lunar | * |
| Exactimage | Ubuntu | mantic | * |
| Exactimage | Ubuntu | oracular | * |
| Exactimage | Ubuntu | trusty | * |
| Exactimage | Ubuntu | xenial | * |
| Kodi | Ubuntu | bionic | * |
| Kodi | Ubuntu | focal | * |
| Kodi | Ubuntu | kinetic | * |
| Kodi | Ubuntu | lunar | * |
| Kodi | Ubuntu | mantic | * |
| Kodi | Ubuntu | oracular | * |
| Kodi | Ubuntu | xenial | * |
| Libraw | Ubuntu | bionic | * |
| Libraw | Ubuntu | esm-infra/bionic | * |
| Libraw | Ubuntu | esm-infra/focal | * |
| Libraw | Ubuntu | focal | * |
| Libraw | Ubuntu | trusty | * |
| Libraw | Ubuntu | upstream | * |
| Libraw | Ubuntu | xenial | * |
| Rawtherapee | Ubuntu | bionic | * |
| Rawtherapee | Ubuntu | focal | * |
| Rawtherapee | Ubuntu | kinetic | * |
| Rawtherapee | Ubuntu | lunar | * |
| Rawtherapee | Ubuntu | mantic | * |
| Rawtherapee | Ubuntu | oracular | * |
| Rawtherapee | Ubuntu | trusty | * |
| Rawtherapee | Ubuntu | xenial | * |
| Ufraw | Ubuntu | bionic | * |
| Ufraw | Ubuntu | trusty | * |
| Ufraw | Ubuntu | xenial | * |
| Xbmc | Ubuntu | trusty | * |