In dng_lossless_decoder::HuffDecode of dng_lossless_jpeg...
High severity
Unreviewed
Published
Aug 27, 2025
to the GitHub Advisory Database
•
Updated Aug 27, 2025
Description
Published by the National Vulnerability Database
Aug 26, 2025
Published to the GitHub Advisory Database
Aug 27, 2025
Last updated
Aug 27, 2025
In dng_lossless_decoder::HuffDecode of dng_lossless_jpeg.cpp, there is a possible way to cause a crash due to uninitialized data. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
References