[ubuntu/noble-security] libraw 0.21.2-2.1ubuntu0.24.04.1 (Accepted)

Bruce Cable bruce.cable at canonical.com
Tue May 6 06:19:15 UTC 2025


libraw (0.21.2-2.1ubuntu0.24.04.1) noble-security; urgency=medium

  * SECURITY UPDATE: Out of bounds read
    - debian/patches/CVE-2025-43961-CVE-2025-43962.patch: Check
      size of head array values
    - CVE-2025-43961
    - CVE-2025-43962
    - debian/patches/CVE-2025-43963.patch: check split_col/split_row
      values in phase_one_correct
    - CVE-2025-43963
  * SECURITY UPDATE: Malformed input
    - debian/patches/CVE-2025-43964.patch: additional checks in PhaseOne
      correction tag 0x412 processing
    - CVE-2025-43964

Date: 2025-04-28 07:47:12.337824+00:00
Changed-By: Bruce Cable <bruce.cable at canonical.com>
https://launchpad.net/ubuntu/+source/libraw/0.21.2-2.1ubuntu0.24.04.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the noble-changes mailing list