Related Vulnerabilities: CVE-2018-10528  

A stack-based buffer overflow has been found in LibRaw before 0.18.10, in the utf2char() function in libraw_cxx.cpp.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

A stack-based buffer overflow has been found in LibRaw before 0.18.10, in the utf2char() function in libraw_cxx.cpp.

AVG-681 libraw 0.18.9-1 0.18.10-1 Critical Fixed FS#58393

09 May 2018 ASA-201805-2 AVG-681 libraw Critical multiple issues

https://github.com/LibRaw/LibRaw/issues/144
https://github.com/LibRaw/LibRaw/commit/895529fc2f2eb8bc633edd6b04b5b237eb4db564
https://github.com/LibRaw/LibRaw/commit/6f89e5505b1759b788f15cd14d0958b262b82f97
https://github.com/LibRaw/LibRaw/commit/efd8cfabb93fd0396266a7607069901657c082e3