CVE-2020-24890
Published
CVSS v3
5.5
MEDIUM
CVSS v2
2.6
LOW
Affected
1
PROJECT
Description
libraw 20.0 has a null pointer dereference vulnerability in parse_tiff_ifd in src/metadata/tiff.cpp, which may result in context-dependent arbitrary code execution. Note: this vulnerability occurs only if you compile the software in a certain way