USN-3706-1: libjpeg-turbo vulnerabilities
It was discovered that libjpeg-turbo incorrectly handled certain malformed JPEG images. If a user or automated system were tricked into opening a specially crafted JPEG image, a remote attacker could cause libjpeg-turbo to crash, resulting in a denial of service, or possibly execute arbitrary code.
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID for libjpeg-turbo?
The vulnerability ID for libjpeg-turbo is USN-3706-1.
What is the severity of USN-3706-1?
The severity of USN-3706-1 is not specified.
How does libjpeg-turbo handle malformed JPEG images?
Libjpeg-turbo incorrectly handles certain malformed JPEG images.
What is the impact of the vulnerability in libjpeg-turbo?
If exploited, the vulnerability can cause libjpeg-turbo to crash, resulting in a denial of service or possible code execution.
How can I fix the libjpeg-turbo vulnerability?
Upgrade to version 1.5.2-0ubuntu5.18.04.1 for Ubuntu 18.04, 1.5.2-0ubuntu5.17.10.1 for Ubuntu 17.10, 1.4.2-0ubuntu3.1 for Ubuntu 16.04, or 1.3.0-0ubuntu2.1 for Ubuntu 14.04.