Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Lqiulin

#20321of 53,630
12.6Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2021-6807
7.1
2020-10-08
Libvips · Libvips · CVE-2021-27847
**Name of the Vulnerable Software and Affected Versions** Libvips version 8.10.5 **Description** The issue is related to a Division-By-Zero vulnerability in the functions `vips eye point` and `vips mask point` of the Libvips library. This vulnerability is caused by the lack of a check for division by zero. An attacker can exploit this vulnerability to cause a denial of service. **Recommendations** For Libvips version 8.10.5, consider disabling the `vips eye point` and `vips mask point` functions as a temporary workaround until a patch is available. Restrict access to the affected components `eye.c` and `mask.c` to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2021-17636
5.5
2020-09-02
Unknown · Jasper Image Coding Toolkit · CVE-2021-27845
Name of the Vulnerable Software and Affected Versions: JasPer Image Coding Toolkit version 2.0 Description: A Divide-by-zero issue exists in the JasPer Image Coding Toolkit, specifically in the jasper/src/libjasper/jpc/jpc enc.c file. Recommendations: For JasPer Image Coding Toolkit version 2.0, at the moment, there is no information about a newer version that contains a fix for this issue.