CVE-2018-5819: High severity Libraw Libraw vulnerability
An error within the "parsesinaria()" function (internal/dcrawcommon.cpp) within LibRaw versions prior to 0.19.1 can be exploited to exhaust available CPU resources.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-5819?
CVE-2018-5819 is a vulnerability in the LibRaw library versions prior to 0.19.1 that can be exploited to exhaust available CPU resources.
Which software versions are affected by CVE-2018-5819?
LibRaw versions prior to 0.19.1 and Debian Linux 8.0 are affected by CVE-2018-5819.
What is the severity of CVE-2018-5819?
CVE-2018-5819 has a severity value of 7.5 (high).
How can I fix CVE-2018-5819 on Ubuntu?
To fix CVE-2018-5819 on Ubuntu, update the libraw package to version 0.19.1-1 or later.
Where can I find more information about CVE-2018-5819?
You can find more information about CVE-2018-5819 at the following references: - [Debian LTS Announcement](https://lists.debian.org/debian-lts-announce/2019/03/msg00036.html) - [Secunia Research](https://secuniaresearch.flexerasoftware.com/secunia_research/2018-27/) - [Ubuntu Security Notice](https://usn.ubuntu.com/3989-1/)