PT-2021-4616 · Leptonica+1 · Leptonica+1

Published

2021-03-12

·

Updated

2025-01-28

·

CVE-2020-36279

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Leptonica versions prior to 1.80.0
Description The issue is related to a heap-based buffer over-read in the rasteropGeneralLow component of the Leptonica image processing library. This can be exploited by a remote attacker to cause a denial of service. The vulnerability is associated with the adaptmap reg.c and adaptmap.c files.
Recommendations For versions prior to 1.80.0, update to version 1.80.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the rasteropGeneralLow function until a patch is available.

Exploit

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2021-05304
CVE-2020-36279
DLA-2612-1
MGASA-2021-0290
OESA-2021-1327
ROSA-SA-2025-2626

Affected Products

Astra Linux
Leptonica