DEBIAN-CVE-2013-1439

Source
https://security-tracker.debian.org/tracker/CVE-2013-1439
Import Source
https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2013-1439.json
JSON Data
https://api.test.osv.dev/v1/vulns/DEBIAN-CVE-2013-1439
Upstream
Published
2013-09-16T19:14:37Z
Modified
2025-09-19T06:11:25Z
Summary
[none]
Details

The "faster LJPEG decoder" in libraw 0.13.x, 0.14.x, and 0.15.x before 0.15.4 allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a crafted photo file.

References

Affected packages

Debian:11

darktable

Package

Name
darktable
Purl
pkg:deb/debian/darktable?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.2-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

libraw

Package

Name
libraw
Purl
pkg:deb/debian/libraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12

darktable

Package

Name
darktable
Purl
pkg:deb/debian/darktable?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.2-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

libraw

Package

Name
libraw
Purl
pkg:deb/debian/libraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13

darktable

Package

Name
darktable
Purl
pkg:deb/debian/darktable?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.2-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

libkdcraw

Package

Name
libkdcraw
Purl
pkg:deb/debian/libkdcraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
24.12.0-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

libraw

Package

Name
libraw
Purl
pkg:deb/debian/libraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:14

darktable

Package

Name
darktable
Purl
pkg:deb/debian/darktable?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.2-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

libkdcraw

Package

Name
libkdcraw
Purl
pkg:deb/debian/libkdcraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
24.12.0-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

libraw

Package

Name
libraw
Purl
pkg:deb/debian/libraw?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}