Unspecified vulnerability in dcraw 0.8.x up to and including 0.8.9, as used in libraw, ufraw, shotwell, and other products, allows context-dependent malicious users to cause a denial of service via a crafted photo file that triggers a (1) divide-by-zero, (2) infinite loop, or (3) NULL pointer dereference.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dave coffin dcraw 0.8.6 |
||
dave coffin dcraw 0.8.5 |
||
dave coffin dcraw 0.8.4 |
||
dave coffin dcraw 0.8.3 |
||
dave coffin dcraw 0.8.9 |
||
dave coffin dcraw 0.8.2 |
||
dave coffin dcraw 0.8.1 |
||
dave coffin dcraw 0.8.8 |
||
dave coffin dcraw 0.8.7 |
||
dave coffin dcraw 0.8.0 |