PT-2021-10932 · Unknown · Ok-File-Formats

Waynedevmaze

·

Published

2021-07-15

·

Updated

2022-10-26

·

CVE-2020-23707

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions ok-file-formats through 2020-06-26
Description A heap-based buffer overflow issue in the ok jpg decode block progressive() function at ok jpg.c:1054 allows attackers to cause a Denial of Service (DOS) via a crafted jpeg file.
Recommendations For ok-file-formats through 2020-06-26, consider disabling the ok jpg decode block progressive() function until a patch is available to prevent Denial of Service attacks via crafted jpeg files.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2020-23707

Affected Products

Ok-File-Formats