CVE-2013-1438

Source
https://nvd.nist.gov/vuln/detail/CVE-2013-1438
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2013-1438.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2013-1438
Related
Published
2014-01-19T18:02:56Z
Modified
2024-12-27T23:45:23.335445Z
Summary
[none]
Details

Unspecified vulnerability in dcraw 0.8.x through 0.8.9, as used in libraw, ufraw, shotwell, and other products, allows context-dependent attackers to cause a denial of service via a crafted photo file that triggers a (1) divide-by-zero, (2) infinite loop, or (3) NULL pointer dereference.

References

Affected packages

Debian:11 / darktable

Package

Name
darktable
Purl
pkg:deb/debian/darktable?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.2-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / darktable

Package

Name
darktable
Purl
pkg:deb/debian/darktable?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.2-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / darktable

Package

Name
darktable
Purl
pkg:deb/debian/darktable?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.2-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:11 / dcraw

Package

Name
dcraw
Purl
pkg:deb/debian/dcraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.28-1

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:12 / dcraw

Package

Name
dcraw
Purl
pkg:deb/debian/dcraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.28-1

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:13 / dcraw

Package

Name
dcraw
Purl
pkg:deb/debian/dcraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.28-1

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:11 / exactimage

Package

Name
exactimage
Purl
pkg:deb/debian/exactimage?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.9-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / exactimage

Package

Name
exactimage
Purl
pkg:deb/debian/exactimage?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.9-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / exactimage

Package

Name
exactimage
Purl
pkg:deb/debian/exactimage?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.9-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / libkdcraw

Package

Name
libkdcraw
Purl
pkg:deb/debian/libkdcraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.1.0-1
0.1.0-2
0.1.1-1
0.1.1-2
0.1.2-1
0.1.3-1
0.1.4-1
0.1.4-2
0.1.6-1
0.1.7-1
0.1.7-2
0.1.8-1

24.*

24.05.2-1
24.08.2-1
24.12.0-1

4:4.*

4:4.7.2-1
4:4.7.4-1
4:4.7.4-2
4:4.8.4-1
4:4.8.4-2
4:4.10.2-1
4:4.10.2-2
4:4.10.2-3
4:4.10.4-1
4:4.10.5-1
4:4.10.5-2
4:4.11.2-1
4:4.11.3-1
4:4.11.5-1
4:4.12.3-1
4:4.12.3-2
4:4.13.1-1
4:4.13.1-2
4:4.14.0-1

4:14.*

4:14.12.2-1

4:15.*

4:15.04.3-1
4:15.08.0-1
4:15.08.0-1.1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:11 / libraw

Package

Name
libraw
Purl
pkg:deb/debian/libraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / libraw

Package

Name
libraw
Purl
pkg:deb/debian/libraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / libraw

Package

Name
libraw
Purl
pkg:deb/debian/libraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}