DEBIAN-CVE-2013-2126
Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 14 Aug 2013, 15:55
Last modified:19 Nov 2025, 01:19
Vulnerability Summary
Overall Risk (default)
minimal
0/100 CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
14 Aug 2013, 15:55
Published
Vulnerability first disclosed
19 Nov 2025, 01:19
Last Modified
Vulnerability information updated
Description
Multiple double free vulnerabilities in the LibRaw::unpack function in libraw_cxx.cpp in LibRaw before 0.15.2 allow context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a malformed full-color (1) Foveon or (2) sRAW image file.
Affected Systems
- debian•darktable
< 1.2.1-2 | < 1.2.1-2 | < 1.2.1-2 | < 1.2.1-2
- debian•libkdcraw
< 24.12.0-1 | < 24.12.0-1
- debian•libraw
< 0.15.3-1 | < 0.15.3-1 | < 0.15.3-1 | < 0.15.3-1