PT-2025-45970 · Julia · Jpegturbo Jll

Published

2025-10-21

·

Updated

2025-10-21

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
The tjLoadImage function in libjpeg-turbo 2.0.1 has an integer overflow with a resultant heap-based buffer overflow via a BMP image because multiplication of pitch and height is mishandled, as demonstrated by tjbench.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

JLSEC-2025-178

Affected Products

Jpegturbo Jll