PT-2018-11547 · Unknown+1 · Jpeg-Compressor+1
Publicado
2018-06-30
·
Atualizado
2020-08-24
·
CVE-2018-13030
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
jpeg-compressor version 0.1
Description
An issue in the build huffman function in stb image.c allows remote attackers to cause a denial of service, resulting in a stack-based buffer overflow and application crash, or possibly have other unspecified impacts.
Recommendations
For jpeg-compressor version 0.1, consider disabling the build huffman function in stb image.c as a temporary workaround until a patch is available.
Exploit
Correção
Memory Corruption
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Jpeg-Compressor
Stb Image