Applications
CVE-2026-51235
8.8
High
EPSS n/aJul 28, 2026
LibRaw 0.21 buffer overflow in image parsing (stretch/fuji_rotate) may enable RCE.
This CVE has been withdrawn. NVD marks this identifier as Rejected, which means it was a duplicate or turned out not to be a vulnerability. The analysis below is kept for reference only — do not act on it.
executive summary
technical analysis
affected
LibRaw 0.21Applications using LibRaw for RAW image decoding (viewers/editors/converters)Media processing pipelines
impact
Processing crafted RAW files can trigger buffer overflow during decoding, enabling remote arbitrary code execution or denial-of-service.
action required
Immediate action required
how to fix
Remediation steps are tailored for users whose stack is affected. Add this technology to your stack to see the fix checklist.
references