VYPR
Medium severity5.5NVD Advisory· Published Sep 1, 2022· Updated Jun 17, 2026

CVE-2020-35530

CVE-2020-35530

Description

In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • Libraw/Libraw6 versions
    cpe:2.3:a:libraw:libraw:0.20.0:-:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:libraw:libraw:0.20.0:-:*:*:*:*:*:*
    • cpe:2.3:a:libraw:libraw:0.20.0:rc2:*:*:*:*:*:*
    • cpe:2.3:a:libraw:libraw:0.20.1:*:*:*:*:*:*:*
    • cpe:2.3:a:libraw:libraw:0.20.2:*:*:*:*:*:*:*
    • cpe:2.3:a:libraw:libraw:0.21.0:beta1:*:*:*:*:*:*
    • (no CPE)
  • cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.