Out-of-Bounds Read in LibRaw Affects Fujifilm Tag Parser
CVE-2025-43961

2.9LOW

Key Information:

Vendor

Libraw

Status
Vendor
CVE Published:
21 April 2025

What is CVE-2025-43961?

An out-of-bounds read vulnerability exists in LibRaw versions prior to 0.21.4, specifically located in the metadata/tiff.cpp file affecting the Fujifilm 0xf00c tag parser. This flaw may lead to the potential exposure of sensitive information or application crashes, necessitating prompt updates to safeguard against potential exploits. Users of LibRaw are advised to upgrade to version 0.21.4 or later to mitigate this issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

LibRaw 0 < 0.21.4

References

CVSS V3.1

Score:
2.9
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.