CVE-2023-1729: Fedoraproject Fedora
Medium severity, CVSS 6.5. EPSS: 1.3% chance of exploitation in the next 30 days.
A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.
Affected products
- Fedoraproject Fedora: version 37 only; version 38 only
- Libraw Libraw: before 0.21.2 (fixed in 0.21.2)
- Red Hat Enterprise Linux: version 7.0 only; version 8.0 only; version 9.0 only
Published 2023-05-15. Last modified 2026-06-17.