PT-2021-4486 · Unknown · Libjpeg-Turbo

Published

2021-09-01

·

Updated

2021-09-01

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions libjpeg-turbo (affected versions not specified)
Description The issue is related to the tjInitDecompress() function in the libjpeg-turbo library, which is used for image processing. It involves pointer dereference errors. An attacker, acting remotely, could exploit this issue to impact the availability of protected information by consuming excessive memory.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-05120

Affected Products

Libjpeg-Turbo