Known Vulnerabilities for products from Libraw

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Libraw".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-5342 Not Provided 2026-04-02 2026-04-02
CVE-2026-5318 Not Provided 2026-04-02 2026-04-02
CVE-2021-32142 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.8 - HIGH 2023-02-17 2023-11-07
CVE-2020-35535 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.5 - MEDIUM 2022-09-01 2022-09-07
CVE-2020-35534 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.5 - MEDIUM 2022-09-01 2022-09-07
CVE-2020-35533 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.5 - MEDIUM 2022-09-01 2022-09-21
CVE-2020-35532 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.5 - MEDIUM 2022-09-01 2022-09-29
CVE-2020-35531 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.5 - MEDIUM 2022-09-01 2022-09-29
CVE-2020-35530 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.5 - MEDIUM 2022-09-01 2022-09-29
CVE-2020-24890 ** DISPUTED ** libraw 20.0 has a null pointer dereference vulnerability in parse_tiff_ifd in src/metadata/tiff.cpp, which may... 5.5 - MEDIUM 2020-09-16 2023-11-07
CVE-2020-24889 A buffer overflow vulnerability in LibRaw version < 20.0 LibRaw::GetNormalizedModel in src/metadata/normalize_model.cpp may l... 7.8 - HIGH 2020-09-16 2022-12-06
CVE-2020-24870 Libraw before 0.20.1 has a stack buffer overflow via LibRaw::identify_process_dng_fields in identify.cpp. 8.8 - HIGH 2021-06-02 2022-12-09
CVE-2020-22628 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 6.5 - MEDIUM 2023-08-22 2023-09-10
CVE-2020-15503 LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.c... 7.5 - HIGH 2020-07-02 2023-11-07
CVE-2020-15365 LibRaw before 0.20-Beta3 has an out-of-bounds write in parse_exif() in metadata\exif_gps.cpp via an unrecognized AtomName and... 6.5 - MEDIUM 2020-06-28 2020-07-06
CVE-2018-20365 LibRaw::raw2image() in libraw_cxx.cpp has a heap-based buffer overflow. 6.5 - MEDIUM 2018-12-22 2020-08-24
CVE-2018-20364 LibRaw::copy_bayer in libraw_cxx.cpp in LibRaw 0.19.1 has a NULL pointer dereference. 6.5 - MEDIUM 2018-12-22 2019-05-21
CVE-2018-20363 LibRaw::raw2image in libraw_cxx.cpp in LibRaw 0.19.1 has a NULL pointer dereference. 6.5 - MEDIUM 2018-12-22 2019-05-21
CVE-2018-20337 There is a stack-based buffer overflow in the parse_makernote function of dcraw_common.cpp in LibRaw 0.19.1. Crafted input wi... 8.8 - HIGH 2018-12-21 2020-08-24
CVE-2018-10529 An issue was discovered in LibRaw 0.18.9. There is an out-of-bounds read affecting the X3F property table list implementation... 8.8 - HIGH 2018-04-29 2018-06-04

Known software with vulnerabilities from Libraw

Type Vendor Product Version
ApplicationLibrawLibraw0.11.1