Back to search
CVE-2015-3885
Published: May 19, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
Integer overflow in the ljpeg_start function in dcraw 7.00 and earlier allows remote attackers to cause a denial of service (crash) via a crafted image, which triggers a buffer overflow, related to the len variable.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
74590
vdb-entry
x_refsource_BID
GLSA-201706-17
vendor-advisory
x_refsource_GENTOO
FEDORA-2015-8482
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-8717
vendor-advisory
x_refsource_FEDORA
GLSA-201701-54
vendor-advisory
x_refsource_GENTOO
FEDORA-2015-8706
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-8671
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-8170
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-8621
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-8699
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-8647
vendor-advisory
x_refsource_FEDORA
20150511 [oCERT-2015-006] dcraw input sanitization errors
mailing-list
x_refsource_BUGTRAQ
FEDORA-2015-8498
vendor-advisory
x_refsource_FEDORA
http://www.ocert.org/advisories/ocert-2015-006.html
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now