Files
CVEs-PoC/2020/CVE-2020-35530.md
T
2024-06-18 02:51:15 +02:00

18 lines
658 B
Markdown

### [CVE-2020-35530](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-35530)
![](https://img.shields.io/static/v1?label=Product&message=LibRaw&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-787&color=brighgreen)
### Description
In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.
### POC
#### Reference
- https://github.com/LibRaw/LibRaw/issues/272
#### Github
- https://github.com/Live-Hack-CVE/CVE-2020-35530