First published: Wed Mar 23 2022(Updated: )
A Heap-based Buffer Overflow vulnerabilty exists in jhead 3.04 and 3.05 is affected by: Buffer Overflow via the RemoveUnknownSections function in jpgfile.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jhead Project Jhead | =3.04 | |
Jhead Project Jhead | =3.05 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-28277 is a Heap-based Buffer Overflow vulnerability in jhead 3.04 and 3.05.
CVE-2021-28277 affects jhead versions 3.04 and 3.05.
CVE-2021-28277 has a severity rating of 7.8 (high).
To fix CVE-2021-28277, update jhead to a version that is not affected (3.06 or later).
Yes, you can find references for CVE-2021-28277 at the following links: [link1](https://github.com/Matthias-Wandel/jhead/issues/16) and [link2](https://security.gentoo.org/glsa/202210-17).