darktable-org / darktable-org/darktable
new darktable release for libraw cve fixes
Open
Nobody has claimed this yet.
Fixed in master
no-issue-activity
- Dominant language
- C
- Stars
- 13.1k
- Forks
- 1.4k
- Avg merge
- 22h 14m
- Merged PRs (30d)
- 198
Description
Describe the bug
Can you please release a new darktable release shipping latest libraw, which has fixes for CVE-2026-5318, CVE-2026-20884, CVE-2026-24660, CVE-2026-20889, CVE-2026-21413, CVE-2026-20911, CVE-2026-24450, CVE-2026-5342, CVE-2026-5318
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start by reviewing darktable's dependency and release process to find where the bundled libraw version is defined. Confirm the latest libraw version containing the listed CVE fixes and determine the release steps; done means a new darktable release ships that updated dependency.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- c
- Domain
- release, security
- Issue type
- Feature
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Quiet
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100