First published: Tue May 06 2025(Updated: )
It was discovered that LibRaw could be made to read out of bounds. An attacker could possibly use this issue to cause applications using LibRaw to crash, resulting in a denial of service. (CVE-2025-43961, CVE-2025-43962, CVE-2025-43963, CVE-2025-43964)
Affected Software | Affected Version | How to fix |
---|---|---|
Libraw |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The severity of USN-7485-1 is categorized as a denial of service vulnerability.
To address USN-7485-1, upgrade to the patched versions of the affected LibRaw packages as specified in the advisory.
USN-7485-1 affects multiple versions of LibRaw including those before 0.21.3-1ubuntu0.25.04.1.
An attacker could exploit the USN-7485-1 vulnerability to cause applications using LibRaw to crash.
Yes, USN-7485-1 is associated with several CVEs including CVE-2025-43961 and CVE-2025-43964.