The phase_one_correct function in Libraw before 0.17.1...
Critical severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Jan 14, 2020
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Apr 4, 2024
The phase_one_correct function in Libraw before 0.17.1 allows attackers to cause memory errors and possibly execute arbitrary code, related to memory object initialization.
References