


Perceptive Security
SOC/SIEM Consultancy

A heap-based buffer overflow vulnerability exists in the lossless_jpeg_load_raw functionality of LibRaw Commit 0b56545 and Commit d20315b. A specially crafted m…
Published:
6 april 2026 om 22:00:00
Alert date:
7 april 2026 om 16:03:26
Source:
nvd.nist.gov
Supply Chain & Dependencies
A heap-based buffer overflow vulnerability exists in the lossless_jpeg_load_raw functionality of LibRaw library in commits 0b56545 and d20315b. The vulnerability can be triggered by providing a specially crafted malicious file that leads to heap buffer overflow. This affects the image processing capabilities of applications using the LibRaw library. An attacker can exploit this by providing malicious files to applications that process images using the affected LibRaw functionality.
Technical details
Mitigation steps:
Affected products:
LibRaw
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-21413
https://talosintelligence.com/vulnerability_reports/TALOS-2026-2331
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
