First published: Wed Sep 16 2020(Updated: )
A buffer overflow vulnerability in LibRaw version < 20.0 LibRaw::GetNormalizedModel in src/metadata/normalize_model.cpp may lead to context-dependent arbitrary code execution.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libraw Libraw | <0.20.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2020-24889.
The title of this vulnerability is 'A buffer overflow vulnerability in LibRaw version < 20.0 LibRaw::GetNormalizedModel in src/metadata/...'.
The severity of CVE-2020-24889 is high with a severity value of 7.8.
CVE-2020-24889 affects LibRaw version < 20.0.
To fix CVE-2020-24889, users should update LibRaw to a version equal to or greater than 20.0.