Search CVE reports


Toggle filters

11 – 15 of 15 results


CVE-2020-35531

Medium priority

Some fixes available 4 of 60

In LibRaw, an out-of-bounds read vulnerability exists within the get_huffman_diff() function (libraw\src\x3f\x3f_utils_patched.cpp) when reading data from an image file.

9 affected packages

darktable, dcraw, digikam, exactimage, kodi...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
darktable Needs evaluation Needs evaluation Needs evaluation Needs evaluation
dcraw Needs evaluation Needs evaluation Needs evaluation Needs evaluation
digikam Not affected Not affected Fixed Fixed
exactimage Needs evaluation Needs evaluation Needs evaluation Needs evaluation
kodi Needs evaluation Needs evaluation Needs evaluation Needs evaluation
rawtherapee Needs evaluation Needs evaluation Needs evaluation Needs evaluation
ufraw Not in release Not in release Not in release Needs evaluation
libraw Not affected Not affected Fixed Fixed
xbmc Not in release Not in release Not in release Not in release
Show all 9 packages Show less packages

CVE-2020-35530

Medium priority

Some fixes available 4 of 60

In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.

9 affected packages

darktable, dcraw, digikam, exactimage, kodi...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
darktable Needs evaluation Needs evaluation Needs evaluation Needs evaluation
dcraw Needs evaluation Needs evaluation Needs evaluation Needs evaluation
digikam Not affected Not affected Fixed Fixed
exactimage Needs evaluation Needs evaluation Needs evaluation Needs evaluation
kodi Needs evaluation Needs evaluation Needs evaluation Needs evaluation
rawtherapee Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libraw Not affected Not affected Fixed Fixed
ufraw Not in release Not in release Not in release Needs evaluation
xbmc Not in release Not in release Not in release Not in release
Show all 9 packages Show less packages

CVE-2020-22628

Medium priority

Some fixes available 2 of 53

Buffer Overflow vulnerability in LibRaw::stretch() function in libraw\src\postprocessing\aspect_ratio.cpp.

9 affected packages

xbmc, libraw, ufraw, darktable, exactimage...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xbmc Not in release Not in release Not in release Not in release
libraw Not affected Not affected Fixed Needs evaluation
ufraw Not in release Not in release Not in release Needs evaluation
darktable Needs evaluation Needs evaluation Needs evaluation Needs evaluation
exactimage Needs evaluation Needs evaluation Needs evaluation Needs evaluation
dcraw Needs evaluation Needs evaluation Needs evaluation Needs evaluation
rawtherapee Needs evaluation Needs evaluation Needs evaluation Needs evaluation
kodi Needs evaluation Needs evaluation Needs evaluation Needs evaluation
digikam Not affected Not affected Fixed Not affected
Show all 9 packages Show less packages

CVE-2020-19858

Medium priority

Some fixes available 1 of 16

Platinum Upnp SDK through 1.2.0 has a directory traversal vulnerability. The attack could remote attack victim by sending http://ip:port/../privacy.avi URL to compromise a victim's privacy.

3 affected packages

digikam, kodi, xbmc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
digikam Not affected Not affected Fixed Not affected
kodi Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xbmc
Show less packages

CVE-2017-0691

Low priority

Some fixes available 3 of 15

A denial of service vulnerability in the Android media framework. Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-36724453.

1 affected package

digikam

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
digikam Not affected Not affected Fixed Fixed
Show less packages