Re: [BLFS Trac] #23109: LibRaw-0.22.1

"BLFS Trac" ([email protected] via blfs-book Mailing List) <[email protected]>
Newsgroups gmane.linux.lfs.beyond.book
Message-ID <[email protected]>
#23109: LibRaw-0.22.1
-------------------------+---------------------
 Reporter:  Bruce Dubbs  |       Owner:  pierre
     Type:  enhancement  |      Status:  closed
 Priority:  normal       |   Milestone:  13.1
Component:  BOOK         |     Version:  git
 Severity:  normal       |  Resolution:  fixed
 Keywords:               |
-------------------------+---------------------
Comment (by Douglas R. Reno):

 Security information is now available from oss-security for the TALOS
 issues:

 {{{
 Further information about the vulnerabilities reported by Cisco Talos can
 be
 found in their reports:

 - TALOS-2026-2330 / CVE-2026-20911
   LibRaw HuffTable::initval heap-based buffer overflow vulnerability
   https://talosintelligence.com/vulnerability_reports/TALOS-2026-2330

   A heap-based buffer overflow vulnerability exists in the
 HuffTable::initval
   functionality of LibRaw Commit 0b56545 and Commit d20315b. A specially
   crafted malicious file can lead to a heap buffer overflow. An attacker
   can provide a malicious file to trigger this vulnerability.

 - TALOS-2026-2331 / CVE-2026-21413
   LibRaw lossless_jpeg_load_raw heap-based buffer overflow vulnerability
   https://talosintelligence.com/vulnerability_reports/TALOS-2026-2331

   A heap-based buffer overflow vulnerability exists in the
   lossless_jpeg_load_raw functionality of LibRaw Commit 0b56545 and
   Commit d20315b. A specially crafted malicious file can lead to a heap
 buffer
   overflow. An attacker can provide a malicious file to trigger this
   vulnerability.

 - TALOS-2026-2358 / CVE-2026-20889
   LibRaw x3f_thumb_loader heap-based buffer overflow vulnerability
   https://talosintelligence.com/vulnerability_reports/TALOS-2026-2358

   A heap-based buffer overflow vulnerability exists in the
 x3f_thumb_loader
   functionality of LibRaw Commit d20315b. A specially crafted malicious
 file
   can lead to a heap buffer overflow. An attacker can provide a malicious
 file
   to trigger this vulnerability.

 - TALOS-2026-2359 / CVE-2026-24660
   LibRaw x3f_load_huffman heap-based buffer overflow vulnerability
   https://talosintelligence.com/vulnerability_reports/TALOS-2026-2359

   A heap-based buffer overflow vulnerability exists in the
 x3f_load_huffman
   functionality of LibRaw Commit d20315b. A specially crafted malicious
 file
   can lead to a heap buffer overflow. An attacker can provide a malicious
 file
   to trigger this vulnerability.

 - TALOS-2026-2363 / CVE-2026-24450
   LibRaw uncompressed_fp_dng_load_raw integer overflow vulnerability
   https://talosintelligence.com/vulnerability_reports/TALOS-2026-2363

   An integer overflow vulnerability exists in the
 uncompressed_fp_dng_load_raw
   functionality of LibRaw Commit 8dc68e2. A specially crafted malicious
 file
   can lead to a heap buffer overflow. An attacker can provide a malicious
 file
   to trigger this vulnerability.

 - TALOS-2026-2364 / CVE-2026-20884
   LibRaw deflate_dng_load_raw integer overflow vulnerability
   https://talosintelligence.com/vulnerability_reports/TALOS-2026-2364

   An integer overflow vulnerability exists in the deflate_dng_load_raw
   functionality of LibRaw Commit 8dc68e2. A specially crafted malicious
 file
   can lead to a heap buffer overflow. An attacker can provide a malicious
 file
   to trigger this vulnerability.

 Additional CVEs also appear to have been issued for some of the fixes:

 - CVE-2026-5318 appears to be a duplicate for independent reporting of the
   TALOS-2026-2330 / CVE-2026-20911 issue in
   https://github.com/LibRaw/LibRaw/issues/794

 - CVE-2026-5342 for the fix listed above as "Nikon padded/12bit: no need
 to
   calculate padded row size before final raw_width adjustment" and
 originally
   reported in https://github.com/LibRaw/LibRaw/issues/795
 }}}
-- 
Ticket URL: <https://wiki.linuxfromscratch.org/blfs/ticket/23109#comment:4>
BLFS Trac <https://wiki.linuxfromscratch.org/blfs/>
Beyond Linux From Scratch

-- 
http://lists.linuxfromscratch.org/sympa/info/blfs-book
Unsubscribe: See the above information page
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.