libraw 20.0 has a null pointer dereference vulnerability in parse_tiff_ifd in src/metadata/tiff.cpp, which may result in context-dependent arbitrary code execution. Note: this vulnerability occurs only if you compile the software in a certain way
References
Configurations
History
No history.
Information
Published : 2020-09-16 15:15
Updated : 2024-11-21 05:16
NVD link : CVE-2020-24890
Mitre link : CVE-2020-24890
CVE.ORG link : CVE-2020-24890
JSON object : View
Products Affected
libraw
- libraw
CWE
CWE-476
NULL Pointer Dereference