REDHAT-BUG-1588803: Low severity libjpeg vulnerability
Published Jun 7, 2018
·Updated
libjpeg 9c has a large loop because readpixel in rdtarga.c mishandles EOF.
References:
https://github.com/ChijinZ/securityadvisories/blob/master/libjpeg-v9c/mail.pdf https://github.com/ChijinZ/securityadvisories/tree/master/libjpeg-v9c
Affected Software
1 affected component
libjpeg libjpeg
Event History
Jun 7, 2018
Data Sourced
via Red Hat·09:18 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1588803?
The severity of REDHAT-BUG-1588803 is classified as critical due to a potential denial of service.
2
How do I fix REDHAT-BUG-1588803?
To fix REDHAT-BUG-1588803, you should update to the latest version of libjpeg that includes the security patch.
3
What causes the issue in REDHAT-BUG-1588803?
The issue in REDHAT-BUG-1588803 is caused by the mishandling of EOF in the read_pixel function within rdtarga.c.
4
Which software is affected by REDHAT-BUG-1588803?
REDHAT-BUG-1588803 affects libjpeg version 9c.
5
Is there any workaround for REDHAT-BUG-1588803?
There are no known workarounds for REDHAT-BUG-1588803, and updating is the recommended solution.