Integer overflow in the ljpeg_start function in dcraw 7.00 and earlier allows remote attackers to cause a denial of service (crash) via a crafted image, which triggers a buffer overflow, related to the len variable.
References
Configurations
History
No history.
Information
Published : 2015-05-19 18:59
Updated : 2018-10-09 19:56
NVD link : CVE-2015-3885
Mitre link : CVE-2015-3885
CVE.ORG link : CVE-2015-3885
JSON object : View
Products Affected
dcraw_project
- dcraw
fedoraproject
- fedora
CWE
CWE-189
Numeric Errors