libraw/libraw-CVE-2020-22628.patch
Petr Gajdos 026c265f2e - security update
- added patches
  fix CVE-2020-22628 [bsc#1215308], stretch() function in librawsrcpostprocessingspect_ratio.cpp
  + libraw-CVE-2020-22628.patch

OBS-URL: https://build.opensuse.org/package/show/graphics/libraw?expand=0&rev=154
2023-09-14 14:58:10 +00:00

14 lines
553 B
Diff

Index: LibRaw-0.21.1/src/metadata/identify.cpp
===================================================================
--- LibRaw-0.21.1.orig/src/metadata/identify.cpp
+++ LibRaw-0.21.1/src/metadata/identify.cpp
@@ -1243,7 +1243,7 @@ dng_skip:
if (raw_width < 22 || raw_width > 64000 || raw_height < 22 ||
pixel_aspect < 0.1 || pixel_aspect > 10. ||
- raw_height > 64000)
+ raw_height > 64000 || pixel_aspect < 0.1 || pixel_aspect > 10)
is_raw = 0;
if(raw_width <= left_margin || raw_height <= top_margin)
is_raw = 0;