Medium severity5.5NVD Advisory· Published Sep 1, 2022· Updated Jun 17, 2026
CVE-2020-35535
CVE-2020-35535
Description
In LibRaw, there is an out-of-bounds read vulnerability within the "LibRaw::parseSonySRF()" function (libraw\src\metadata\sony.cpp) when processing srf files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:libraw:libraw:0.20.0:-:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:libraw:libraw:0.20.0:-:*:*:*:*:*:*
- cpe:2.3:a:libraw:libraw:0.20.0:rc2:*:*:*:*:*:*
- cpe:2.3:a:libraw:libraw:0.20.1:*:*:*:*:*:*:*
- cpe:2.3:a:libraw:libraw:0.20.2:*:*:*:*:*:*:*
- cpe:2.3:a:libraw:libraw:0.21.0:beta1:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
2- github.com/LibRaw/LibRaw/commit/c243f4539233053466c1309bde606815351bee81nvdPatchThird Party Advisory
- github.com/LibRaw/LibRaw/issues/283nvdExploitIssue TrackingPatchThird Party Advisory
News mentions
0No linked articles in our index yet.