Advisories ยป MGASA-2013-0385

Updated libkdcraw packages fix CVE-2013-1438 & CVE-2013-1439

Publication date: 23 Dec 2013
Modification date: 23 Dec 2013
Type: security
Affected Mageia releases : 3
CVE: CVE-2013-1438 , CVE-2013-1439

Description

Updated libkdcraw packages fix libraw security vulnerabilities:

It was discovered that LibRaw incorrectly handled photo files. If a user or
automated system were tricked into processing a specially crafted photo
file, applications linked against LibRaw could be made to crash, resulting
in a denial of service (CVE-2013-1438, CVE-2013-1439).
                

References

SRPMS

3/core