First published: Fri Sep 06 2024(Updated: )
Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component. A remote attacker can send a malformed jpeg file to the service and cause arbitrary code execution or denial of service of the target service.
Affected Software | Affected Version | How to fix |
---|---|---|
F5 Traffix Systems Signaling Delivery Controller | =5.1.0 | 5.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of F5-K000140960 is high due to the potential for arbitrary code execution or denial of service.
To fix F5-K000140960, upgrade to the latest version of affected software products that address the stack-based buffer overflow.
F5-K000140960 affects all versions of Libjpeg-turbo utilized within F5 Traffix Systems Signaling Delivery Controller.
Yes, F5-K000140960 can be exploited remotely by sending a malformed JPEG file to the vulnerable service.
The potential consequences of F5-K000140960 include arbitrary code execution and denial of service, impacting the functionality of the service.