CVE-2019-19035: Medium severity jhead vulnerability
Published Nov 17, 2019
·Updated
jhead 3.03 is affected by: heap-based buffer over-read. The impact is: Denial of service. The component is: ReadJpegSections and processSOFn in jpgfile.c. The attack vector is: Open a specially crafted JPEG file.
Affected Software
1 affected component
Jhead Project Jhead=3.03
Event History
Nov 17, 2019
CVE Published
via MITRE·03:52 PM
Data Sourced
via MITRE·03:52 PM
Description
Frequently Asked Questions
1
What is CVE-2019-19035?
CVE-2019-19035 is a vulnerability in jhead version 3.03 that allows a heap-based buffer over-read, resulting in a denial of service.
2
How severe is CVE-2019-19035?
The severity of CVE-2019-19035 is medium, with a CVSS score of 5.5.
3
What is the impact of CVE-2019-19035?
The impact of CVE-2019-19035 is a denial of service.
4
Which component is affected by CVE-2019-19035?
The affected component is ReadJpegSections and process_SOFn in jpgfile.c.
5
How can the CVE-2019-19035 vulnerability be exploited?
The CVE-2019-19035 vulnerability can be exploited by opening a specially crafted JPEG file.