ELA-977-1 libraw security update

buffer overflow

2023-10-03
Packagelibraw
Version0.17.2-6+deb9u5 (stretch)
Related CVEs CVE-2020-22628 CVE-2021-32142


Two buffer overflow vulnerabilities were found in libraw, a raw image decoder library, which could lead to denial of service via application crash or potentially other unspecified impact.



For Debian 9 stretch, these problems have been fixed in version 0.17.2-6+deb9u5.

We recommend that you upgrade your libraw packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.