CVE-2013-2127

Libraw < 0.15.0 - Memory Corruption

Title source: rule
STIX 2.1

Description

Buffer overflow in the exposure correction code in LibRaw before 0.15.1 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.

References (4)

Core 4
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/53547
Mailing List mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2013/05/29/7
Various Sources x_refsource_confirm
http://www.libraw.org/news/libraw-0-15-1

Scores

EPSS 0.0092
EPSS Percentile 76.1%

Details

CWE
CWE-119
Status published
Products (1)
libraw/libraw < 0.15.0
Published Aug 14, 2013
Tracked Since Feb 18, 2026