CVE-2021-39514: Medium severity jpeg libjpeg vulnerability
Published Sep 20, 2021
·Updated
An issue was discovered in libjpeg through 2020021. An uncaught floating point exception in the function ACLosslessScan::ParseMCU() located in aclosslessscan.cpp. It allows an attacker to cause Denial of Service.
Affected Software
1 affected component
jpeg libjpeg<=2020021
Event History
Sep 20, 2021
CVE Published
via MITRE·03:26 PM
Data Sourced
via MITRE·03:26 PM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-39514?
CVE-2021-39514 is classified as a Denial of Service vulnerability.
2
How do I fix CVE-2021-39514?
To fix CVE-2021-39514, you need to upgrade to a version of libjpeg newer than 2020021.
3
What kind of attack does CVE-2021-39514 enable?
CVE-2021-39514 allows an attacker to cause a Denial of Service by triggering an uncaught floating point exception.
4
Which software is affected by CVE-2021-39514?
CVE-2021-39514 affects libjpeg versions up to and including 2020021.
5
Where can I find more information about CVE-2021-39514?
More details about CVE-2021-39514 can be found in the issue tracker on GitHub.