CVE-2017-14348: Buffer Overflow
Published Sep 12, 2017
·Updated
LibRaw before 0.18.4 has a heap-based Buffer Overflow in the processCanonCameraInfo function via a crafted file.
Affected Software
1 affected component
Libraw Libraw<=0.18.3
Event History
Sep 12, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14348?
CVE-2017-14348 has a high severity rating due to its potential for exploitation via a heap-based buffer overflow.
2
How do I fix CVE-2017-14348?
To fix CVE-2017-14348, you should upgrade LibRaw to version 0.18.4 or later.
3
What software versions are affected by CVE-2017-14348?
CVE-2017-14348 affects LibRaw versions up to and including 0.18.3.
4
What kind of vulnerability is CVE-2017-14348?
CVE-2017-14348 is a heap-based buffer overflow vulnerability.
5
Can CVE-2017-14348 be exploited remotely?
Yes, CVE-2017-14348 can potentially be exploited remotely through specially crafted files.