[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2018-20330 -- libturbojpeg

Deprecated
ID: oval:org.secpod.oval:def:1900082Date: (C)2019-02-28   (M)2023-07-25
Class: VULNERABILITYFamily: unix




The tjLoadImage function in libturbojpeg 2.0.1 has an integer overflow with a resultant heap-based buffer overflow via a BMP image because multiplication of pitch and height is mishandled, as demonstrated bytjbench.

Platform:
Ubuntu 18.10
Product:
libturbojpeg
Reference:
CVE-2018-20330
CVE    1
CVE-2018-20330
CPE    2
cpe:/a:ibjpeg-turbo.virtualgl:libturbojpeg
cpe:/o:ubuntu:ubuntu_linux:18.10

© SecPod Technologies