vulnerability

FreeBSD: VID-c60804f1-126f-11e8-8b5b-4ccc6adda413 (CVE-2017-16909): libraw -- multiple DoS vulnerabilities

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Feb 15, 2018
Added
Feb 16, 2018
Modified
Dec 10, 2025

Description

Secunia Research reports: CVE-2017-16909: An error related to the "LibRaw::panasonic_load_raw()" function (dcraw_common.cpp) can be exploited to cause a heap-based buffer overflow and subsequently cause a crash via a specially crafted TIFF image. CVE-2017-16910: An error within the "LibRaw::xtrans_interpolate()" function (internal/dcraw_common.cpp) can be exploited to cause an invalid read memory access.

Solution

freebsd-upgrade-package-libraw
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.