[ubuntu/plucky-security] libraw 0.21.3-1ubuntu0.25.04.1 (Accepted)

Bruce Cable bruce.cable at canonical.com
Tue May 6 06:19:11 UTC 2025


libraw (0.21.3-1ubuntu0.25.04.1) plucky-security; urgency=medium

  * SECURITY UPDATE: Out of bounds read
    - debian/patches/CVE-2025-43961-CVE-2025-43962.patch: Check
      size of head array values
    - CVE-2025-43961
    - CVE-2025-43962
    - debian/patches/CVE-2025-43963.patch: check split_col/split_row
      values in phase_one_correct
    - CVE-2025-43963
  * SECURITY UPDATE: Malformed input
    - debian/patches/CVE-2025-43964.patch: additional checks in PhaseOne
      correction tag 0x412 processing
    - CVE-2025-43964

Date: 2025-04-28 08:47:12.252080+00:00
Changed-By: Bruce Cable <bruce.cable at canonical.com>
https://launchpad.net/ubuntu/+source/libraw/0.21.3-1ubuntu0.25.04.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the plucky-changes mailing list