[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248678

 
 

909

 
 

195426

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2013:1803 -- centos 6 libjpeg-turbo

ID: oval:org.secpod.oval:def:202982Date: (C)2013-12-10   (M)2023-12-26
Class: PATCHFamily: unix




The libjpeg-turbo package contains a library of functions for manipulating JPEG images. It also contains simple client programs for accessing the libjpeg functions. An uninitialized memory read issue was found in the way libjpeg-turbo decoded images with missing Start Of Scan JPEG markers or Define Huffman Table JPEG markers. A remote attacker could create a specially crafted JPEG image that, when decoded, could possibly lead to a disclosure of potentially sensitive information. All libjpeg-turbo users are advised to upgrade to these updated packages, which contain backported patches to correct these issues.

Platform:
CentOS 6
Product:
libjpeg-turbo
Reference:
CESA-2013:1803
CVE-2013-6629
CVE-2013-6630
CVE    2
CVE-2013-6630
CVE-2013-6629
CPE    2
cpe:/o:centos:centos:6
cpe:/a:d.r.commander:libjpeg-turbo

© SecPod Technologies