[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2017-14265":6},{"stargazers_count":4,"fetched_at":5},5,"2026-04-08T14:11:31.067Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":68,"aliases":69,"duplicate_of":9,"upstream":70,"downstream":71,"duplicates":84,"related":85,"reserved_at":9,"published_at":91,"modified_at":92,"state":93,"summary":94,"references_raw":103,"kevs":112,"epss":113,"epss_history":116,"metrics":374,"affected":383},"CVE-2017-14265","A Stack-based Buffer Overflow was discovered in xtrans_interpolate in internal/dcraw_common.cpp in LibRaw before 0.18.3. It could allow a remote denial of service or code execution attack.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-119","Improper Restriction of Operations within the Bounds of a Memory Buffer","The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.","weakness","Stable","Class","High",[20,24,28,32,36,40,44,48,52,56,60,64],{"id":21,"name":22,"techniques":23},"CAPEC-10","Buffer Overflow via Environment Variables",[],{"id":25,"name":26,"techniques":27},"CAPEC-100","Overflow Buffers",[],{"id":29,"name":30,"techniques":31},"CAPEC-123","Buffer Manipulation",[],{"id":33,"name":34,"techniques":35},"CAPEC-14","Client-side Injection-induced Buffer Overflow",[],{"id":37,"name":38,"techniques":39},"CAPEC-24","Filter Failure through Buffer Overflow",[],{"id":41,"name":42,"techniques":43},"CAPEC-42","MIME Conversion",[],{"id":45,"name":46,"techniques":47},"CAPEC-44","Overflow Binary Resource File",[],{"id":49,"name":50,"techniques":51},"CAPEC-45","Buffer Overflow via Symbolic Links",[],{"id":53,"name":54,"techniques":55},"CAPEC-46","Overflow Variables and Tags",[],{"id":57,"name":58,"techniques":59},"CAPEC-47","Buffer Overflow via Parameter Expansion",[],{"id":61,"name":62,"techniques":63},"CAPEC-8","Buffer Overflow in an API Call",[],{"id":65,"name":66,"techniques":67},"CAPEC-9","Buffer Overflow in Local Command-Line Utilities",[],[],[],[],[72,74,76,78,80,82],{"_key":73},"ALPINE-CVE-2017-14265",{"_key":75},"DEBIAN-CVE-2017-14265",{"_key":77},"UBUNTU-CVE-2017-14265",{"_key":79},"USN-3492-1",{"_key":81},"OPENSUSE-SU-2024:10980-1",{"_key":83},"DLA-2903-1",[],[86,88,90],{"_key":87},"MGASA-2017-0357",{"_key":89},"MGASA-2017-0359",{"_key":81},"2017-09-11T09:00:00.000Z","2024-08-05T19:20:41.411Z","Deferred",{"cisa_kev":95,"cisa_ransomware":95,"cisa_vendor":9,"epss_severity":96,"epss_score":97,"severity":98,"severity_score":99,"severity_version":100,"severity_source":101,"severity_vector":102,"severity_status":93},false,"low",0.00931,"critical",9.8,"v3.0","nvd","CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",[104],{"url":105,"sources":106,"tags":108},"https://github.com/LibRaw/LibRaw/issues/99",[107,101],"cve.org",[109,110,111],"X Refsource CONFIRM","Patch","Third Party Advisory",[],{"date":114,"score":97,"percentile":115},"2026-04-07",0.76062,[117,121,124,127,130,133,136,139,142,145,148,151,153,155,157,161,164,167,170,173,176,179,182,185,187,189,192,195,199,202,204,207,210,212,215,218,221,224,228,231,234,237,240,243,246,249,252,254,257,260,263,266,269,272,275,278,281,284,287,290,293,296,299,302,304,307,310,312,315,317,319,322,325,327,330,333,336,338,341,344,347,350,353,356,358,360,363,366,368,371],{"date":118,"score":119,"percentile":120},"2025-11-04",0.01653,0.81405,{"date":122,"score":119,"percentile":123},"2025-11-05",0.81407,{"date":125,"score":119,"percentile":126},"2025-11-06",0.81406,{"date":128,"score":119,"percentile":129},"2025-11-07",0.81416,{"date":131,"score":119,"percentile":132},"2025-11-08",0.81423,{"date":134,"score":119,"percentile":135},"2025-11-09",0.81419,{"date":137,"score":119,"percentile":138},"2025-11-10",0.81415,{"date":140,"score":119,"percentile":141},"2025-11-11",0.81422,{"date":143,"score":119,"percentile":144},"2025-11-12",0.81433,{"date":146,"score":119,"percentile":147},"2025-11-13",0.81441,{"date":149,"score":119,"percentile":150},"2025-11-14",0.81445,{"date":152,"score":119,"percentile":147},"2025-11-15",{"date":154,"score":119,"percentile":147},"2025-11-16",{"date":156,"score":119,"percentile":147},"2025-11-17",{"date":158,"score":159,"percentile":160},"2025-11-18",0.01567,0.7996,{"date":162,"score":159,"percentile":163},"2025-11-19",0.79964,{"date":165,"score":159,"percentile":166},"2025-11-20",0.79971,{"date":168,"score":159,"percentile":169},"2025-11-21",0.8094,{"date":171,"score":159,"percentile":172},"2025-11-22",0.80943,{"date":174,"score":159,"percentile":175},"2025-11-23",0.80933,{"date":177,"score":159,"percentile":178},"2025-11-24",0.80934,{"date":180,"score":159,"percentile":181},"2025-11-25",0.80937,{"date":183,"score":159,"percentile":184},"2025-11-26",0.80939,{"date":186,"score":159,"percentile":172},"2025-11-27",{"date":188,"score":159,"percentile":178},"2025-11-28",{"date":190,"score":159,"percentile":191},"2025-11-29",0.80938,{"date":193,"score":159,"percentile":194},"2025-11-30",0.80942,{"date":196,"score":197,"percentile":198},"2025-12-01",0.01558,0.80979,{"date":200,"score":197,"percentile":201},"2025-12-02",0.80984,{"date":203,"score":197,"percentile":201},"2025-12-03",{"date":205,"score":197,"percentile":206},"2025-12-04",0.80898,{"date":208,"score":197,"percentile":209},"2025-12-05",0.80907,{"date":211,"score":197,"percentile":209},"2025-12-06",{"date":213,"score":197,"percentile":214},"2025-12-07",0.80905,{"date":216,"score":197,"percentile":217},"2025-12-08",0.80908,{"date":219,"score":197,"percentile":220},"2025-12-09",0.80923,{"date":222,"score":197,"percentile":223},"2025-12-10",0.80948,{"date":225,"score":226,"percentile":227},"2025-12-11",0.01644,0.81467,{"date":229,"score":226,"percentile":230},"2025-12-12",0.81478,{"date":232,"score":226,"percentile":233},"2025-12-13",0.81479,{"date":235,"score":226,"percentile":236},"2025-12-14",0.81475,{"date":238,"score":226,"percentile":239},"2025-12-15",0.81471,{"date":241,"score":226,"percentile":242},"2025-12-16",0.81482,{"date":244,"score":226,"percentile":245},"2025-12-17",0.81488,{"date":247,"score":226,"percentile":248},"2025-12-18",0.81502,{"date":250,"score":226,"percentile":251},"2025-12-19",0.81508,{"date":253,"score":226,"percentile":248},"2025-12-20",{"date":255,"score":226,"percentile":256},"2025-12-21",0.815,{"date":258,"score":226,"percentile":259},"2025-12-22",0.81499,{"date":261,"score":226,"percentile":262},"2025-12-23",0.81501,{"date":264,"score":226,"percentile":265},"2025-12-24",0.81512,{"date":267,"score":226,"percentile":268},"2025-12-25",0.81529,{"date":270,"score":226,"percentile":271},"2025-12-26",0.81528,{"date":273,"score":226,"percentile":274},"2025-12-27",0.81561,{"date":276,"score":226,"percentile":277},"2025-12-28",0.81515,{"date":279,"score":226,"percentile":280},"2025-12-29",0.81511,{"date":282,"score":226,"percentile":283},"2025-12-30",0.81518,{"date":285,"score":226,"percentile":286},"2025-12-31",0.81532,{"date":288,"score":226,"percentile":289},"2026-01-01",0.81604,{"date":291,"score":226,"percentile":292},"2026-01-02",0.81599,{"date":294,"score":226,"percentile":295},"2026-01-03",0.81593,{"date":297,"score":226,"percentile":298},"2026-01-04",0.81509,{"date":300,"score":226,"percentile":301},"2026-01-05",0.81503,{"date":303,"score":226,"percentile":251},"2026-01-06",{"date":305,"score":226,"percentile":306},"2026-01-07",0.8151,{"date":308,"score":226,"percentile":309},"2026-01-08",0.8152,{"date":311,"score":226,"percentile":309},"2026-01-09",{"date":313,"score":226,"percentile":314},"2026-01-10",0.81522,{"date":316,"score":226,"percentile":277},"2026-01-11",{"date":318,"score":226,"percentile":251},"2026-01-12",{"date":320,"score":226,"percentile":321},"2026-01-13",0.81506,{"date":323,"score":226,"percentile":324},"2026-01-14",0.81527,{"date":326,"score":226,"percentile":324},"2026-01-15",{"date":328,"score":226,"percentile":329},"2026-01-16",0.81536,{"date":331,"score":226,"percentile":332},"2026-01-17",0.81542,{"date":334,"score":226,"percentile":335},"2026-01-18",0.81534,{"date":337,"score":226,"percentile":324},"2026-01-19",{"date":339,"score":226,"percentile":340},"2026-01-20",0.81531,{"date":342,"score":226,"percentile":343},"2026-01-21",0.81537,{"date":345,"score":226,"percentile":346},"2026-01-22",0.81547,{"date":348,"score":226,"percentile":349},"2026-01-23",0.81571,{"date":351,"score":226,"percentile":352},"2026-01-24",0.81579,{"date":354,"score":226,"percentile":355},"2026-01-25",0.81572,{"date":357,"score":226,"percentile":355},"2026-01-26",{"date":359,"score":226,"percentile":349},"2026-01-27",{"date":361,"score":226,"percentile":362},"2026-01-28",0.81569,{"date":364,"score":226,"percentile":365},"2026-01-29",0.81568,{"date":367,"score":226,"percentile":365},"2026-01-30",{"date":369,"score":226,"percentile":370},"2026-01-31",0.81573,{"date":372,"score":226,"percentile":373},"2026-02-01",0.81655,[375],{"source":101,"cvss_v2_0":376,"cvss_v3_0":381,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":377,"baseSeverity":9,"vectorString":378,"impactScore":379,"exploitabilityScore":380},7.5,"AV:N/AC:L/Au:N/C:P/I:P/A:P",6.4,10,{"baseScore":99,"baseSeverity":382,"vectorString":102,"impactScore":99,"exploitabilityScore":380},"CRITICAL",[384],{"ecosystem":9,"name":385,"vendor":386,"product":386,"cpe_part":387,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":388},"LibRaw","libraw","a",[389],{"version":390,"is_range":391,"range_type":392,"version_start":9,"version_start_type":9,"version_end":393,"version_end_type":394,"fixed_in":9},"lte0.18.2",true,"cpe","0.18.2","including"]