Show filters
18 Total Results
Displaying 11-18 of 18
Sort by:
Attacker Value
Unknown

CVE-2018-19664

Disclosure Date: November 29, 2018 (last updated November 27, 2024)
libjpeg-turbo 2.0.1 has a heap-based buffer over-read in the put_pixel_rows function in wrbmp.c, as demonstrated by djpeg.
0
Attacker Value
Unknown

CVE-2018-1152

Disclosure Date: June 18, 2018 (last updated November 26, 2024)
libjpeg-turbo 1.5.90 is vulnerable to a denial of service vulnerability caused by a divide by zero when processing a crafted BMP image.
0
Attacker Value
Unknown

CVE-2017-15232

Disclosure Date: October 11, 2017 (last updated November 26, 2024)
libjpeg-turbo 1.5.2 has a NULL Pointer Dereference in jdpostct.c and jquant1.c via a crafted JPEG file.
0
Attacker Value
Unknown

CVE-2014-9092

Disclosure Date: October 10, 2017 (last updated November 26, 2024)
libjpeg-turbo before 1.3.1 allows remote attackers to cause a denial of service (crash) via a crafted JPEG file, related to the Exif marker.
0
Attacker Value
Unknown

CVE-2017-9614

Disclosure Date: July 27, 2017 (last updated November 08, 2023)
The fill_input_buffer function in jdatasrc.c in libjpeg-turbo 1.5.1 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via a crafted jpg file. NOTE: Maintainer asserts the issue is due to a bug in downstream code caused by misuse of the libjpeg API
Attacker Value
Unknown

CVE-2016-3616

Disclosure Date: February 13, 2017 (last updated November 26, 2024)
The cjpeg utility in libjpeg allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or execute arbitrary code via a crafted file.
0
Attacker Value
Unknown

CVE-2013-6629

Disclosure Date: November 19, 2013 (last updated October 05, 2023)
The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of component data during the reading of segments that follow Start Of Scan (SOS) JPEG markers, which allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted JPEG image.
0
Attacker Value
Unknown

CVE-2012-2806

Disclosure Date: August 13, 2012 (last updated October 04, 2023)
Heap-based buffer overflow in the get_sos function in jdmarker.c in libjpeg-turbo 1.2.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a large component count in the header of a JPEG image.
0