Search CVE reports


Toggle filters

11 – 20 of 46 results


CVE-2021-46822

Low priority

Some fixes available 1 of 2

The PPM reader in libjpeg-turbo through 2.0.90 mishandles use of tjLoadImage for loading a 16-bit binary PPM file into a grayscale buffer and loading a 16-bit binary PGM file into an RGB buffer. This is related to a heap-based...

1 affected package

libjpeg-turbo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg-turbo Not affected Fixed Not affected
Show less packages

CVE-2021-39520

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function BlockBitmapRequester::PushReconstructedData() located in blockbitmaprequester.cpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39519

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function BlockBitmapRequester::PullQData() located in blockbitmaprequester.cpp It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39518

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. LineBuffer::FetchRegion() in linebuffer.cpp has a heap-based buffer overflow.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39517

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function BlockBitmapRequester::ReconstructUnsampled() located in blockbitmaprequester.cpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39516

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function HuffmanDecoder::Get() located in huffmandecoder.hpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39515

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function SampleInterleavedLSScan::ParseMCU() located in sampleinterleavedlsscan.cpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39514

Low priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. An uncaught floating point exception in the function ACLosslessScan::ParseMCU() located in aclosslessscan.cpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-29390

Medium priority
Not affected

libjpeg-turbo version 2.0.90 has a heap-based buffer over-read (2 bytes) in decompress_smooth_data in jdcoefct.c.

3 affected packages

libjpeg6b, libjpeg9, libjpeg-turbo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
libjpeg-turbo Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-20205

Low priority
Not affected

Libjpeg-turbo versions 2.0.91 and 2.0.90 is vulnerable to a denial of service vulnerability caused by a divide by zero when processing a crafted GIF image.

1 affected package

libjpeg-turbo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg-turbo Not affected Not affected
Show less packages