CVE-2026-51235: Buffer Overflow
Published Jul 27, 2026
·Updated
LibRaw 0.21 is vulnerable to Buffer Overflow in the stretch() function (src/librawcxx.cpp) and fujirotate() function (src/decoders/fuji.cpp).
Other sources
Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
— NVD
Affected Software
1 affected component
Libraw Libraw=0.21
Event History
Jul 27, 2026
CVE Published
via MITRE·12:00 AM
Rejected
via MITRE·12:00 AM
Data Sourced
via Red Hat·06:01 PM
DescriptionSeverityAffected Software
Data Sourced
via NVD·06:16 PM
Description
Jul 31, 2026
Rejected
via MITRE·02:33 PM
Nov 28, 58569
Event
via Red Hat·10:32 AM
Frequently Asked Questions
1
What is the status of CVE-2026-51235?
CVE-2026-51235 has been rejected and should not be used.
2
What was the severity level of CVE-2026-51235?
The severity level of CVE-2026-51235 was high, rated at 7.
3
What type of vulnerability is CVE-2026-51235 classified as?
CVE-2026-51235 is classified as a Buffer Overflow vulnerability.
4
Which functions in LibRaw are implicated in CVE-2026-51235?
CVE-2026-51235 involves the stretch() function and fuji_rotate() function in LibRaw.
5
When was CVE-2026-51235 published?
CVE-2026-51235 was published on July 27, 2026.