[ubuntu/jammy-security] libraw 0.20.2-2ubuntu2.22.04.2 (Accepted)

Bruce Cable bruce.cable at canonical.com
Tue May 6 06:19:17 UTC 2025


libraw (0.20.2-2ubuntu2.22.04.2) jammy-security; urgency=medium

  * SECURITY UPDATE: Out of bounds read
    - debian/patches/CVE-2025-43961-CVE-2025-43962.patch: Check
      size of head array values
    - CVE-2025-43961
    - CVE-2025-43962
    - debian/patches/CVE-2025-43963.patch: check split_col/split_row
      values in phase_one_correct
    - CVE-2025-43963
  * SECURITY UPDATE: Malformed input
    - debian/patches/CVE-2025-43964.patch: additional checks in PhaseOne
      correction tag 0x412 processing
    - CVE-2025-43964

Date: 2025-04-28 07:32:12.693809+00:00
Changed-By: Bruce Cable <bruce.cable at canonical.com>
https://launchpad.net/ubuntu/+source/libraw/0.20.2-2ubuntu2.22.04.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list