Vulnerability Details CVE-2025-43962
In LibRaw before 0.21.4, phase_one_correct in decoders/load_mfbacks.cpp has out-of-bounds reads for tag 0x412 processing, related to large w0 or w1 values or the frac and mult calculations.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 12.2%
CVSS Severity
CVSS v3 Score 2.9
Products affected by CVE-2025-43962
-
cpe:2.3:a:libraw:libraw:0.11.1
-
cpe:2.3:a:libraw:libraw:0.11.2
-
cpe:2.3:a:libraw:libraw:0.11.3
-
cpe:2.3:a:libraw:libraw:0.12.0
-
cpe:2.3:a:libraw:libraw:0.12.1
-
cpe:2.3:a:libraw:libraw:0.12.2
-
cpe:2.3:a:libraw:libraw:0.12.3
-
cpe:2.3:a:libraw:libraw:0.12.4
-
cpe:2.3:a:libraw:libraw:0.12.5
-
cpe:2.3:a:libraw:libraw:0.13.0
-
cpe:2.3:a:libraw:libraw:0.13.1
-
cpe:2.3:a:libraw:libraw:0.13.2
-
cpe:2.3:a:libraw:libraw:0.13.3
-
cpe:2.3:a:libraw:libraw:0.13.4
-
cpe:2.3:a:libraw:libraw:0.13.5
-
cpe:2.3:a:libraw:libraw:0.13.6
-
cpe:2.3:a:libraw:libraw:0.13.7
-
cpe:2.3:a:libraw:libraw:0.13.8
-
cpe:2.3:a:libraw:libraw:0.14.0
-
cpe:2.3:a:libraw:libraw:0.14.1
-
cpe:2.3:a:libraw:libraw:0.14.2
-
cpe:2.3:a:libraw:libraw:0.14.3
-
cpe:2.3:a:libraw:libraw:0.14.4
-
cpe:2.3:a:libraw:libraw:0.14.5
-
cpe:2.3:a:libraw:libraw:0.14.6
-
cpe:2.3:a:libraw:libraw:0.14.7
-
cpe:2.3:a:libraw:libraw:0.14.8
-
cpe:2.3:a:libraw:libraw:0.15.0
-
cpe:2.3:a:libraw:libraw:0.15.1
-
cpe:2.3:a:libraw:libraw:0.15.2
-
cpe:2.3:a:libraw:libraw:0.15.3
-
cpe:2.3:a:libraw:libraw:0.15.4
-
cpe:2.3:a:libraw:libraw:0.16.0
-
cpe:2.3:a:libraw:libraw:0.16.1
-
cpe:2.3:a:libraw:libraw:0.16.2
-
cpe:2.3:a:libraw:libraw:0.17.0
-
cpe:2.3:a:libraw:libraw:0.17.1
-
cpe:2.3:a:libraw:libraw:0.17.2
-
cpe:2.3:a:libraw:libraw:0.18.0
-
cpe:2.3:a:libraw:libraw:0.18.1
-
cpe:2.3:a:libraw:libraw:0.18.10
-
cpe:2.3:a:libraw:libraw:0.18.11
-
cpe:2.3:a:libraw:libraw:0.18.12
-
cpe:2.3:a:libraw:libraw:0.18.13
-
cpe:2.3:a:libraw:libraw:0.18.2
-
cpe:2.3:a:libraw:libraw:0.18.3
-
cpe:2.3:a:libraw:libraw:0.18.4
-
cpe:2.3:a:libraw:libraw:0.18.5
-
cpe:2.3:a:libraw:libraw:0.18.6
-
cpe:2.3:a:libraw:libraw:0.18.7
-
cpe:2.3:a:libraw:libraw:0.18.8
-
cpe:2.3:a:libraw:libraw:0.18.9
-
cpe:2.3:a:libraw:libraw:0.19.0
-
cpe:2.3:a:libraw:libraw:0.19.1
-
cpe:2.3:a:libraw:libraw:0.19.2
-
cpe:2.3:a:libraw:libraw:0.19.3
-
cpe:2.3:a:libraw:libraw:0.19.4
-
cpe:2.3:a:libraw:libraw:0.19.5
-
cpe:2.3:a:libraw:libraw:0.20
-
cpe:2.3:a:libraw:libraw:0.20.0
-
cpe:2.3:a:libraw:libraw:0.20.1
-
cpe:2.3:a:libraw:libraw:0.20.2
-
cpe:2.3:a:libraw:libraw:0.21.0
-
cpe:2.3:a:libraw:libraw:0.21.1
-
cpe:2.3:a:libraw:libraw:0.21.2
-
cpe:2.3:a:libraw:libraw:0.21.3