USN-3706-2: libjpeg-turbo vulnerabilities
USN-3706-1 fixed a vulnerability in libjpeg-turbo. This update provides the corresponding update for Ubuntu 12.04 ESM. Original advisory details: It was discovered that libjpeg-turbo incorrectly handled certain malformed JPEG images. If a user or automated system were tricked into opening a specially crafted JPEG image, a remote attacker could cause libjpeg-turbo to crash, resulting in a denial of service, or possibly execute arbitrary code.
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID for this advisory?
The vulnerability ID for this advisory is USN-3706-2.
What is the software affected by this vulnerability?
The software affected by this vulnerability is libjpeg-turbo8 version 1.1.90+svn733-0ubuntu4.5 on Ubuntu 12.04.
How severe is this vulnerability?
The severity of this vulnerability is not mentioned in the advisory.
Is there a fix available for this vulnerability?
Yes, the fix for this vulnerability is provided in the update mentioned in the advisory.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability in the following references: [link1](https://ubuntu.com/security/CVE-2014-9092), [link2](https://ubuntu.com/security/CVE-2016-3616), [link3](https://ubuntu.com/security/CVE-2018-11212).