Alerts This Week
Warning Icon 1 562
Alerts This Week
Warning Icon 1 562

Debian DSA-3950-1: Critical Libraw Memory Corruption DoS Issue

debian
Calendar Grey August 21, 2017
Debian Logo
Debian DSA-3950-2 highlights vulnerabilities in libraw related to memory corruption, posing risks of denial of service. Security updates are advised.
Hossein Lotfi and Jakub Jirasek from Secunia Research have discovered multiple vulnerabilities in LibRaw, a library for reading RAW images

Summary

For the oldstable distribution (jessie), these problems have been fixed
in version 0.16.0-9+deb8u3.

For the stable distribution (stretch), these problems have been fixed in
version 0.17.2-6+deb9u1.

We recommend that you upgrade your libraw packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: libraw
CVE ID: CVE-2017-6886 CVE-2017-6887

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here