Heap-based buffer overflow in LibRaw - CVE-2018-5800

 

Heap-based buffer overflow in LibRaw - CVE-2018-5800

Published: April 11, 2018 / Updated: January 3, 2019


Vulnerability identifier: #VU11766
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-5800
CWE-ID: CWE-122
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local attacker to cause DoS condition on the target system.

The weakness exists in the kodak_ycbcr_load_raw function in internal/dcraw_common.cpp due to an off-by-one error. A local attacker can submit specially crafted images, trigger heap-based buffer overflow and cause the service to crash.

Affected software

LibRaw
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for Power

How to mitigate CVE-2018-5800

Update to version 0.18.7.


External References

Related Security Bulletins