GHSA-9m8r-gj3p-r7rwCriticalCVSS 9.8

A heap-based buffer overflow vulnerability exists in the x3f_thumb_loader functionality of LibRaw...

Published
April 7, 2026
Last Modified
June 30, 2026

🔗 CVE IDs covered (1)

📋 Description

A heap-based buffer overflow vulnerability exists in the x3f_thumb_loader functionality of LibRaw Commit d20315b. A specially crafted malicious file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

🔗 References (11)