PT-2025-17418 · Libraw+5 · Libraw+5

Lexa

·

Published

2025-04-13

·

Updated

2025-12-04

·

CVE-2025-43961

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions LibRaw versions prior to 0.21.4
Description The issue is related to an out-of-bounds read in the Fujifilm 0xf00c tag parser within the metadata/tiff.cpp file.
Recommendations For versions prior to 0.21.4, update to version 0.21.4 or later to resolve the issue.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

AZL-61753
BDU:2025-10596
CVE-2025-43961
DLA-4142-1
MGASA-2025-0316
OESA-2025-1478
OPENSUSE-SU-2025:15025-1
OPENSUSE-SU-2025_1568-1
OPENSUSE-SU-2025_1572-1
SUSE-SU-2025:01569-1
SUSE-SU-2025:01572-1
SUSE-SU-2025:1568-1
SUSE-SU-2025:1569-1
SUSE-SU-2025:1572-1
SUSE-SU-2025_01572-1
SUSE-SU-2025_1572-1
USN-7485-1

Affected Products

Alt Linux
Debian
Libraw
Linuxmint
Suse
Ubuntu