First published: Thu Jul 13 2023(Updated: )
libjpeg commit db33a6e was discovered to contain a heap buffer overflow via LineBitmapRequester::EncodeRegion at linebitmaprequester.cpp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted file.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IJG libjpeg | <1.66 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-37837 has been identified as a high severity vulnerability due to the potential for Denial of Service (DoS) attacks.
To mitigate CVE-2023-37837, users should update to a version of libjpeg that is greater than 1.66.
CVE-2023-37837 is caused by a heap buffer overflow in the LineBitmapRequester::EncodeRegion function.
CVE-2023-37837 affects users and applications that utilize versions of libjpeg up to 1.66.
CVE-2023-37837 can facilitate Denial of Service (DoS) attacks through the exploitation of crafted files.