Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Mageia 7: MGASA-2020-0040 Critical: Libjpeg Integer Overflow

mageia
Calendar Grey January 17, 2020
Dist Mageia Esm H88
Revised libjpeg versions in Mageia address severe security vulnerabilities such as buffer overruns and integer overflows.
The updated packages fix security vulnerabilities: A signed integer overflow and subsequent segfault that occurred when attempting to decompress images with more than 715827882 pi...

Summary

The updated packages fix security vulnerabilities: A signed integer overflow and subsequent segfault that occurred when attempting to decompress images with more than 715827882 pixels using the 64-bit C version of TJBench.

References

- https://bugs.mageia.org/show_bug.cgi?id=26057

- https://github.com/libjpeg-turbo/libjpeg-turbo/releases/tag/2.0.4

Resolution

SRPMS

- 7/core/libjpeg-2.0.4-1.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 17 Jan 2020
URL: https://advisories.mageia.org/MGASA-2020-0040.html
Type: security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here