CVE-2018-25017: Rawspeed

Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.

RawSpeed (aka librawspeed) 3.1 has a heap-based buffer overflow in TableLookUp::setTable.

Affected products

Published 2021-07-01. Last modified 2026-06-17.