REDHAT-BUG-1579980: Low severity libjpeg vulnerability
Published May 18, 2018
·Updated
An issue was discovered in libjpeg version 9a. The gettextrgbrow function in rdppm.c allows remote attackers to cause a denial of service (Segmentation fault) via a crafted file.
References: https://github.com/ChijinZ/securityadvisories/tree/master/libjpeg-v9a
Affected Software
1 affected component
libjpeg libjpeg
Event History
May 18, 2018
Data Sourced
via Red Hat·09:10 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1579980?
The severity of REDHAT-BUG-1579980 is classified as moderate due to its potential for denial of service.
2
How do I fix REDHAT-BUG-1579980?
To fix REDHAT-BUG-1579980, it is recommended to update to a patched version of libjpeg.
3
What causes the issue in REDHAT-BUG-1579980?
The issue in REDHAT-BUG-1579980 is caused by a vulnerability in the get_text_rgb_row function of libjpeg's rdppm.c.
4
Who is affected by REDHAT-BUG-1579980?
Users of libjpeg version 9a are affected by REDHAT-BUG-1579980.
5
Can REDHAT-BUG-1579980 be exploited remotely?
Yes, REDHAT-BUG-1579980 can be exploited remotely by delivering a crafted file to the target.