Skip to content
Applications

CVE-2026-51235

8.8
High
EPSS n/aJul 28, 2026

LibRaw 0.21 buffer overflow in image parsing (stretch/fuji_rotate) may enable RCE.

This CVE has been withdrawn. NVD marks this identifier as Rejected, which means it was a duplicate or turned out not to be a vulnerability. The analysis below is kept for reference only — do not act on it.

executive summary
technical analysis
affected
LibRaw 0.21Applications using LibRaw for RAW image decoding (viewers/editors/converters)Media processing pipelines
impact

Processing crafted RAW files can trigger buffer overflow during decoding, enabling remote arbitrary code execution or denial-of-service.

action required

Immediate action required

how to fix
Remediation steps are tailored for users whose stack is affected. Add this technology to your stack to see the fix checklist.
references
get alerted

Track only the vulnerabilities that affect your infrastructure.

start for free