File _patchinfo of Package patchinfo.38394

<patchinfo incident="38394">
  <issue tracker="cve" id="2015-3885"/>
  <issue tracker="cve" id="2025-43964"/>
  <issue tracker="cve" id="2025-43962"/>
  <issue tracker="cve" id="2015-8367"/>
  <issue tracker="bnc" id="1241584">VUL-0: CVE-2025-43964: libraw: tag 0x412 processing in phase_one_correct  does not enforce minimum w0 and w1 values</issue>
  <issue tracker="bnc" id="1241585">VUL-0: CVE-2025-43962: libraw: out-of-bounds read when tag 0x412 processing in phase_one_correct function</issue>
  <packager>pgajdos</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for libraw</summary>
  <description>This update for libraw fixes the following issues:

- CVE-2025-43962: Fixed out-of-bounds read when tag 0x412 processing in phase_one_correct function (bsc#1241585)
- CVE-2025-43964: Fixed tag 0x412 processing in phase_one_correct  does not enforce minimum w0 and w1 values (bsc#1241584)
</description>
</patchinfo>
openSUSE Build Service is sponsored by