CVE-2026-20911
A flaw was found in LibRaw. A remote attacker can exploit a heap-based buffer overflow vulnerability in the HuffTable::initval functionality by providing a specially crafted malicious file. This can lead to arbitrary code execution or a denial of service (DoS) on the affected system.
- Vendor
- Red Hat, Red Hat, LibRaw, Red Hat, Red Hat, Red Hat, Red Hat
- Product
- Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 8, LibRaw, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9
- Provider severity
- CRITICAL, HIGH
- Conflicts
- 3