Vulnerability Database

299,879

Total vulnerabilities in the database

CVE-2018-20337

There is a stack-based buffer overflow in the parse_makernote function of dcraw_common.cpp in LibRaw 0.19.1. Crafted input will lead to a denial of service or possibly unspecified other impact.

  • Published: Dec 21, 2018
  • Updated: Nov 9, 2025
  • CVE: CVE-2018-20337
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs: