DEBIAN-CVE-2013-2126

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 14 Aug 2013, 15:55
Last modified:19 Nov 2025, 01:19

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

14 Aug 2013, 15:55
Published
Vulnerability first disclosed
19 Nov 2025, 01:19
Last Modified
Vulnerability information updated

Description

Multiple double free vulnerabilities in the LibRaw::unpack function in libraw_cxx.cpp in LibRaw before 0.15.2 allow context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a malformed full-color (1) Foveon or (2) sRAW image file.

Affected Systems

  • debiandarktable

    < 1.2.1-2 | < 1.2.1-2 | < 1.2.1-2 | < 1.2.1-2

  • debianlibkdcraw

    < 24.12.0-1 | < 24.12.0-1

  • debianlibraw

    < 0.15.3-1 | < 0.15.3-1 | < 0.15.3-1 | < 0.15.3-1

References (1)