Search CVE reports


Toggle filters

11 – 20 of 31 results


CVE-2021-39520

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function BlockBitmapRequester::PushReconstructedData() located in blockbitmaprequester.cpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39519

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function BlockBitmapRequester::PullQData() located in blockbitmaprequester.cpp It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39518

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. LineBuffer::FetchRegion() in linebuffer.cpp has a heap-based buffer overflow.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39517

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function BlockBitmapRequester::ReconstructUnsampled() located in blockbitmaprequester.cpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39516

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function HuffmanDecoder::Get() located in huffmandecoder.hpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39515

Medium priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function SampleInterleavedLSScan::ParseMCU() located in sampleinterleavedlsscan.cpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-39514

Low priority
Needs evaluation

An issue was discovered in libjpeg through 2020021. An uncaught floating point exception in the function ACLosslessScan::ParseMCU() located in aclosslessscan.cpp. It allows an attacker to cause Denial of Service.

4 affected packages

libjpeg, libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg Not affected Not affected Needs evaluation Not in release
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-29390

Medium priority
Not affected

libjpeg-turbo version 2.0.90 has a heap-based buffer over-read (2 bytes) in decompress_smooth_data in jdcoefct.c.

3 affected packages

libjpeg6b, libjpeg9, libjpeg-turbo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Not affected
libjpeg-turbo Not affected Not affected Not affected Not affected
Show less packages

CVE-2020-14153

Low priority

Some fixes available 1 of 8

In IJG JPEG (aka libjpeg) from version 8 through 9c, jdhuff.c has an out-of-bounds array read for certain table pointers.

3 affected packages

libjpeg6b, libjpeg-turbo, libjpeg9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg6b Not affected Not affected Not affected Not affected
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2020-14152

Low priority

Some fixes available 5 of 20

In IJG JPEG (aka libjpeg) before 9d, jpeg_mem_available() in jmemnobs.c in djpeg does not honor the max_memory_to_use setting, possibly causing excessive memory consumption.

3 affected packages

libjpeg-turbo, libjpeg9, libjpeg6b

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libjpeg-turbo Not affected Not affected Not affected Not affected
libjpeg9 Not affected Not affected Not affected Vulnerable
libjpeg6b Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages