Vulnerabilities > Dcraw Project > Dcraw > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-11-26 CVE-2018-19568 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Dcraw Project Dcraw 7.00/9.28
A floating point exception in kodak_radc_load_raw in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an application that bundles the dcraw code.
local
low complexity
dcraw-project CWE-119
5.5
2018-11-26 CVE-2018-19567 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Dcraw Project Dcraw 7.00/9.28
A floating point exception in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an application that bundles the dcraw code.
local
low complexity
dcraw-project CWE-119
5.5