In LibRaw, there is a memory corruption vulnerability within the "crxFreeSubbandData()" function (libraw\src\decoders\crx.cpp) when processing cr3 files.
References
Link Resource
https://github.com/LibRaw/LibRaw/commit/e41f331e90b383e3208cefb74e006df44bf3a4b8 Patch Third Party Advisory
https://github.com/LibRaw/LibRaw/issues/279 Issue Tracking Patch Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2022-09-01T17:54:28

Updated: 2022-09-01T17:54:28

Reserved: 2020-12-17T00:00:00


Link: CVE-2020-35534

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-09-01T18:15:08.970

Modified: 2022-09-07T17:35:56.900


Link: CVE-2020-35534

JSON object: View

cve-icon Redhat Information

No data.