This package contains dcraw, a command line tool to decode raw image data downloaded from digital cameras.
Security Fix(es):
(CVE-2017-13735)
(CVE-2017-14608)
A stack-based buffer overflow in the find_green() function of dcraw through 9.28, as used in ufraw-batch and many other products, may allow a remote attacker to cause a control-flow hijack, denial-of-service, or unspecified other impact via a maliciously crafted raw photo file.(CVE-2018-19655)
{ "severity": "Critical" }
{ "aarch64": [ "dcraw-9.28.0-7.oe2203sp3.aarch64.rpm", "dcraw-debuginfo-9.28.0-7.oe2203sp3.aarch64.rpm", "dcraw-debugsource-9.28.0-7.oe2203sp3.aarch64.rpm" ], "x86_64": [ "dcraw-9.28.0-7.oe2203sp3.x86_64.rpm", "dcraw-debuginfo-9.28.0-7.oe2203sp3.x86_64.rpm", "dcraw-debugsource-9.28.0-7.oe2203sp3.x86_64.rpm" ], "src": [ "dcraw-9.28.0-7.oe2203sp3.src.rpm" ], "noarch": [ "dcraw-help-9.28.0-7.oe2203sp3.noarch.rpm" ] }