PT-2018-3612 · Libjpeg Turbo+2 · Libjpeg-Turbo+2

D. R. Commander

·

Published

2018-06-12

·

Updated

2024-06-15

·

CVE-2018-1152

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions libjpeg-turbo version 1.5.90
Description The issue is related to a denial of service caused by a divide by zero error when processing a crafted BMP image. This can be exploited by a remote attacker to cause a denial of service. The vulnerability is associated with division by zero errors in the library.
Recommendations For libjpeg-turbo version 1.5.90, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Divide By Zero

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-01312
CVE-2018-1152
DLA-1638-1
DLA-2302-1
MGASA-2018-0327
OPENSUSE-SU-2019:1118-1
OPENSUSE-SU-2019_1118-1
OPENSUSE-SU-2019_1343-1
OPENSUSE-SU-2024:10952-1
SUSE-SU-2018:1825-1
SUSE-SU-2019:0711-1
SUSE-SU-2019:1111-1
SUSE-SU-2019_0711-1
SUSE-SU-2019_1111-1
USN-3706-1
USN-3706-2

Affected Products

Suse
Ubuntu
Libjpeg-Turbo