[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256610

 
 

909

 
 

199263

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2023-2214 --- libjpeg-turbo

ID: oval:org.secpod.oval:def:1701558Date: (C)2023-09-01   (M)2023-09-01
Class: PATCHFamily: unix




The PPM reader in libjpeg-turbo through 2.0.90 mishandles use of tjLoadImage for loading a 16-bit binary PPM file into a grayscale buffer and loading a 16-bit binary PGM file into an RGB buffer. This is related to a heap-based buffer overflow in the get_word_rgb_row function in rdppm.c

Platform:
Amazon Linux 2
Product:
libjpeg-turbo
turbojpeg
Reference:
ALAS2-2023-2214
CVE-2021-46822
CVE    1
CVE-2021-46822

© SecPod Technologies