Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-24890

libraw 20.0 has a null pointer dereference vulnerability in parse_tiff_ifd in src/metadata/tiff.cpp, which may result in context-dependent arbitrary code execution. Note: this vulnerability occurs only if you compile the software in a certain way
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 61.7%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.6
Products affected by CVE-2020-24890
  • Libraw » Libraw » Version: 0.20.0
    cpe:2.3:a:libraw:libraw:0.20.0


Contact Us

Shodan ® - All rights reserved