Integer overflow in the ljpeg_start function in dcraw 7.00 and earlier allows remote attackers to cause a denial of service (crash) via a crafted image, which triggers a buffer overflow, related to the len variable.
References
Information
Published : 2015-05-19 11:59
Updated : 2018-10-09 12:56
NVD link : CVE-2015-3885
Mitre link : CVE-2015-3885
JSON object : View
CWE
CWE-189
Numeric Errors
Products Affected
dcraw_project
- dcraw
fedoraproject
- fedora