Show filters
42 Total Results
Displaying 31-40 of 42
Sort by:
Attacker Value
Unknown
CVE-2018-19664
Disclosure Date: November 29, 2018 (last updated November 27, 2024)
libjpeg-turbo 2.0.1 has a heap-based buffer over-read in the put_pixel_rows function in wrbmp.c, as demonstrated by djpeg.
0
Attacker Value
Unknown
CVE-2018-1152
Disclosure Date: June 18, 2018 (last updated November 26, 2024)
libjpeg-turbo 1.5.90 is vulnerable to a denial of service vulnerability caused by a divide by zero when processing a crafted BMP image.
0
Attacker Value
Unknown
CVE-2018-11813
Disclosure Date: June 06, 2018 (last updated November 26, 2024)
libjpeg 9c has a large loop because read_pixel in rdtarga.c mishandles EOF.
0
Attacker Value
Unknown
CVE-2018-11213
Disclosure Date: May 16, 2018 (last updated November 26, 2024)
An issue was discovered in libjpeg 9a. The get_text_gray_row function in rdppm.c allows remote attackers to cause a denial of service (Segmentation fault) via a crafted file.
0
Attacker Value
Unknown
CVE-2018-11214
Disclosure Date: May 16, 2018 (last updated November 26, 2024)
An issue was discovered in libjpeg 9a. The get_text_rgb_row function in rdppm.c allows remote attackers to cause a denial of service (Segmentation fault) via a crafted file.
0
Attacker Value
Unknown
CVE-2018-11212
Disclosure Date: May 16, 2018 (last updated November 26, 2024)
An issue was discovered in libjpeg 9a and 9d. The alloc_sarray function in jmemmgr.c allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted file.
0
Attacker Value
Unknown
CVE-2017-15232
Disclosure Date: October 11, 2017 (last updated November 26, 2024)
libjpeg-turbo 1.5.2 has a NULL Pointer Dereference in jdpostct.c and jquant1.c via a crafted JPEG file.
0
Attacker Value
Unknown
CVE-2014-9092
Disclosure Date: October 10, 2017 (last updated November 26, 2024)
libjpeg-turbo before 1.3.1 allows remote attackers to cause a denial of service (crash) via a crafted JPEG file, related to the Exif marker.
0
Attacker Value
Unknown
CVE-2017-9614
Disclosure Date: July 27, 2017 (last updated November 08, 2023)
The fill_input_buffer function in jdatasrc.c in libjpeg-turbo 1.5.1 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via a crafted jpg file. NOTE: Maintainer asserts the issue is due to a bug in downstream code caused by misuse of the libjpeg API
0
Attacker Value
Unknown
CVE-2016-3616
Disclosure Date: February 13, 2017 (last updated November 26, 2024)
The cjpeg utility in libjpeg allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or execute arbitrary code via a crafted file.
0