CVE-2022-34000: Medium severity libjxl vulnerability
Published Jun 19, 2022
·Updated
libjxl 0.6.1 has an assertion failure in LowMemoryRenderPipeline::Init() in renderpipeline/lowmemoryrenderpipeline.cc.
Affected Software
1 affected component
Libjxl Project Libjxl=0.6.1
Remediation
Patch Available
Event History
Jun 19, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-34000?
CVE-2022-34000 has a high severity due to an assertion failure that can lead to potential denial of service.
2
How do I fix CVE-2022-34000?
To fix CVE-2022-34000, update to the latest version of libjxl that addresses this assertion failure.
3
What versions of libjxl are affected by CVE-2022-34000?
CVE-2022-34000 specifically affects libjxl version 0.6.1.
4
What type of vulnerability is CVE-2022-34000?
CVE-2022-34000 is classified as a denial-of-service vulnerability resulting from an assertion failure.
5
Can CVE-2022-34000 be exploited remotely?
Yes, CVE-2022-34000 can potentially be exploited remotely, leading to application crashes.