[ubuntu/oracular-security] libraw 0.21.2-2.1ubuntu0.24.10.1 (Accepted)

Bruce Cable bruce.cable at canonical.com
Tue May 6 06:19:13 UTC 2025


libraw (0.21.2-2.1ubuntu0.24.10.1) oracular-security; urgency=medium

  * SECURITY UPDATE: Out of bounds read
    - debian/patches/CVE-2025-43961-CVE-2025-43962.patch: Check
      size of head array values
    - CVE-2025-43961
    - CVE-2025-43962
    - debian/patches/CVE-2025-43963.patch: check split_col/split_row
      values in phase_one_correct
    - CVE-2025-43963
  * SECURITY UPDATE: Malformed input
    - debian/patches/CVE-2025-43964.patch: additional checks in PhaseOne
      correction tag 0x412 processing
    - CVE-2025-43964

Date: 2025-04-28 08:46:11.808138+00:00
Changed-By: Bruce Cable <bruce.cable at canonical.com>
https://launchpad.net/ubuntu/+source/libraw/0.21.2-2.1ubuntu0.24.10.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the oracular-changes mailing list