NULL Pointer Dereference in LibRaw Affects Multiple Platforms
CVE-2018-20364

6.5MEDIUM

Key Information:

Vendor

Libraw

Status
Vendor
CVE Published:
22 December 2018

What is CVE-2018-20364?

The vulnerability allows for a NULL pointer dereference in the LibRaw library's copy_bayer function within libraw_cxx.cpp. This issue arises specifically in LibRaw version 0.19.1, potentially leading to software crashes or unexpected behaviors. Users relying on LibRaw for image processing may encounter stability issues, as this flaw can affect various platforms that incorporate this library, increasing the likelihood of software exploitations.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.