8.8
CVSSv3

CVE-2017-14348

Published: 12/09/2017 Updated: 20/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

LibRaw prior to 0.18.4 has a heap-based Buffer Overflow in the processCanonCameraInfo function via a crafted file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

libraw libraw

Vendor Advisories

LibRaw could be made to crash or run programs as your login if it opened a specially crafted file ...
LibRaw before 0184 has a heap-based Buffer Overflow in the processCanonCameraInfo function via a crafted file ...