Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Alexutubalin

#16401de 53,630
16.4CVSS total
Vulnerabilidades · 2
Alta
2
PT-2018-3825
7.1
2018-04-24
Libraw · Libraw · CVE-2018-5812
**Name of the Vulnerable Software and Affected Versions** LibRaw versions prior to 0.18.9 **Description** The issue is related to errors in pointer dereferencing within the `nikon coolscan load raw()` function in the internal/dcraw common.cpp component of the LibRaw image processing library. This can be exploited by a remote attacker to cause a denial of service. **Recommendations** For versions prior to 0.18.9, update to version 0.18.9 or later to resolve the issue. As a temporary workaround, consider disabling the `nikon coolscan load raw()` function until a patch is available.
PT-2018-3826
9.3
2018-04-24
Libraw · Libraw · CVE-2018-5810
**Name of the Vulnerable Software and Affected Versions** LibRaw versions prior to 0.18.9 **Description** The issue is related to an error within the `rollei load raw()` function in the internal/dcraw common.cpp component of LibRaw, which can cause a heap-based buffer overflow. This can lead to a crash and potentially allow a remote attacker to access confidential data, compromise its integrity, and cause a denial of service. **Recommendations** For versions prior to 0.18.9, update to version 0.18.9 or later to resolve the issue. As a temporary workaround, consider disabling the `rollei load raw()` function until a patch is available.