LibRaw: Heap Buffer Overflow A vulnerability has been found in LibRaw where a heap buffer overflow may lead to an application crash. libraw 2023-12-22 2023-12-22 908041 remote 0.21.1-r1 0.21.1-r1

LibRaw is a library for reading RAW files obtained from digital photo cameras.

A vulnerability has been discovered in LibRaw. Please review the CVE identifier referenced below for details.

A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.

There is no known workaround at this time.

All LibRaw users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=media-libs/libraw-0.21.1-r1"
CVE-2023-1729 graaff graaff