{"id":"MGASA-2014-0050","summary":"Updated darktable package fixes two vulnerabilities","details":"Updated darktable package fixes security vulnerabilities:\n\nDarktable before version 1.2.3 contains an embedded copy of LibRaw that\nincorrectly handled photo files. If a user was tricked into processing a\nspecially crafted photo file, darktable could be made to crash, resulting\nin a denial of service (CVE-2013-1438, CVE-2013-1439).\n","modified":"2026-04-16T06:26:01.571067201Z","published":"2014-02-10T20:21:49Z","upstream":["CVE-2013-1438","CVE-2013-1439"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2014-0050.html"},{"type":"WEB","url":"http://www.ubuntu.com/usn/usn-1964-1/"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=12692"}],"affected":[{"package":{"name":"darktable","ecosystem":"Mageia:3","purl":"pkg:rpm/mageia/darktable?arch=source&distro=mageia-3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.2-1.2.mga3"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2014-0050.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}