Medium severity5.5NVD Advisory· Published Sep 1, 2022· Updated Jun 17, 2026
CVE-2020-35531
CVE-2020-35531
Description
In LibRaw, an out-of-bounds read vulnerability exists within the get_huffman_diff() function (libraw\src\x3f\x3f_utils_patched.cpp) when reading data from an image file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:libraw:libraw:0.20.0:-:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:libraw:libraw:0.20.0:-:*:*:*:*:*:*
- cpe:2.3:a:libraw:libraw:0.20.0:rc2:*:*:*:*:*:*
- cpe:2.3:a:libraw:libraw:0.20.1:*:*:*:*:*:*:*
- cpe:2.3:a:libraw:libraw:0.20.2:*:*:*:*:*:*:*
- cpe:2.3:a:libraw:libraw:0.21.0:beta1:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
3- github.com/LibRaw/LibRaw/commit/d75af00681a74dcc8b929207eb895611a6eceb68nvdPatchThird Party Advisory
- github.com/LibRaw/LibRaw/issues/270nvdIssue TrackingPatchThird Party Advisory
- lists.debian.org/debian-lts-announce/2022/09/msg00024.htmlnvdMailing ListThird Party Advisory
News mentions
0No linked articles in our index yet.