VYPR
Unrated severityNVD Advisory· Published Apr 20, 2025· Updated Nov 3, 2025

CVE-2025-43963

CVE-2025-43963

Description

In LibRaw before 0.21.4, phase_one_correct in decoders/load_mfbacks.cpp allows out-of-buffer access because split_col and split_row values are not checked in 0x041f tag processing.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.