CVE-2020-13790
published 2020-06-03CVE-2020-13790: libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.
PriorityP337high8.1CVSS 3.1
AVNACLPRNUIRSUCHINAH
EPSS
3.21%
86.6th percentile
libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libjpeg-turbo | < libjpeg-turbo 1:2.0.5-1 (bookworm) | libjpeg-turbo 1:2.0.5-1 (bookworm) |
| libjpeg-turbo | libjpeg-turbo | — | — |
| libjpeg-turbo | libjpeg-turbo | >= 0 < 1:2.0.5-1 | 1:2.0.5-1 |
| libjpeg-turbo | libjpeg-turbo | >= 0 < 1:2.0.5-1 | 1:2.0.5-1 |
| libjpeg-turbo | libjpeg-turbo | >= 0 < 1:2.0.5-1 | 1:2.0.5-1 |
| libjpeg-turbo | libjpeg-turbo | >= 0 < 1:2.0.5-1 | 1:2.0.5-1 |
| mozilla | mozjpeg | — | — |
CVSS provenance
nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:P
osv8.1HIGH
vendor_debian8.1HIGH
vendor_redhat8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
libjpeg-turbo vulnerability
vendor_ubuntu·2020-06-09
CVE-2020-13790 libjpeg-turbo vulnerability
Title: libjpeg-turbo vulnerability
Summary: libjpeg-turbo could be made to expose sensitive information if it received a specially
crafted PPM file.
It was discovered that libjpeg-turbo incorrectly handled certain PPM files.
An attacker could possibly use this issue to access sensitive information.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c
vendor_redhat·2020-05-25·CVSS 8.1
CVE-2020-13790 [HIGH] CWE-125 libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c
libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c
libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.
A vulnerability was found in libjpeg-turbo, where a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.
Statement: This vulnerability is rated as a moderate because a heap-based buffer over-read exists in the get_rgb_row() function within rdppm.c when processing a malformed PPM input file, this issue may lead to information leakage or crashes, it does not inherently allow code execution or privilege escalation.
Package: libjpeg-turbo (Red Hat Enterprise Linux 6) - Out of support scope
Package: libjpeg-turbo (Red Hat Enterprise Linux 7) - Will not f
Debian
CVE-2020-13790: libjpeg-turbo - libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get...
vendor_debian·2020·CVSS 8.1
CVE-2020-13790 [HIGH] CVE-2020-13790: libjpeg-turbo - libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get...
libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.
Scope: local
bookworm: resolved (fixed in 1:2.0.5-1)
bullseye: resolved (fixed in 1:2.0.5-1)
forky: resolved (fixed in 1:2.0.5-1)
sid: resolved (fixed in 1:2.0.5-1)
trixie: resolved (fixed in 1:2.0.5-1)
GHSA
GHSA-3rgw-2fpg-85mq: libjpeg-turbo 2
ghsa_unreviewed·2022-05-24
CVE-2020-13790 [MEDIUM] GHSA-3rgw-2fpg-85mq: libjpeg-turbo 2
libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.
OSV
CVE-2020-13790: libjpeg-turbo 2
osv·2020-06-03·CVSS 8.1
CVE-2020-13790 [HIGH] CVE-2020-13790: libjpeg-turbo 2
libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-13790 libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c
bugzilla·2020-06-15·CVSS 8.1
CVE-2020-13790 [HIGH] CVE-2020-13790 libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c
CVE-2020-13790 libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c
libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.
Reference:
https://github.com/libjpeg-turbo/libjpeg-turbo/issues/433
Upstream commit:
https://github.com/libjpeg-turbo/libjpeg-turbo/commit/3de15e0c344d11d4b90f4a47136467053eb2d09a
Discussion:
Created libjpeg-turbo tracking bugs for this issue:
Affects: fedora-all [bug 1847159]
Created mingw-libjpeg-turbo tracking bugs for this issue:
Affects: fedora-all [bug 1847160]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2025:7540 https://access.redhat.com/errata/RHSA-2025:7540
Bugzilla
CVE-2020-13790 mingw-libjpeg-turbo: libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c [fedora-all]
bugzilla·2020-06-15·CVSS 8.1
CVE-2020-13790 [HIGH] CVE-2020-13790 mingw-libjpeg-turbo: libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c [fedora-all]
CVE-2020-13790 mingw-libjpeg-turbo: libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this
Bugzilla
CVE-2020-13790 libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c [fedora-all]
bugzilla·2020-06-15·CVSS 8.1
CVE-2020-13790 [HIGH] CVE-2020-13790 libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c [fedora-all]
CVE-2020-13790 libjpeg-turbo: heap-based buffer over-read in get_rgb_row() in rdppm.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multip
arXiv
Fuzzing: Randomness? Reasoning! Efficient Directed Fuzzing via Large Language Models
arxiv_fulltext·2025-06-30
Fuzzing: Randomness? Reasoning! Efficient Directed Fuzzing via Large Language Models
Large Language Model Assisted Directed Fuzzing:\ First, Then Fuzzing
Fuzzing: Randomness? Reasoning! \ Directed Fuzzing via Large Language Models
Xiaotao Feng
360 Security Technology Inc.
Beijing, China
[email protected]
Xiaogang Zhu
School of Computer and Mathematical Sciences
The University of Adelaide
Adelaide, SA, Australia
[email protected]
Kun Hu
School of Science
Edith Cowan University
Joondalup, WA, Australia
[email protected]
Jincheng Wang
360 Security Technology Inc.
Beijing, China
[email protected]
Yingjie Cao
360 Security Technology Inc.
Beijing, China
[email protected]
Guang Gong
360 Security Technology Inc.
Beijing, China
[email protected]
Jianfeng Pan
360 Security Technology Inc.
Beijing, China
[email protected]
## Abstrac
arXiv
Directed Greybox Fuzzing via Large Language Model
arxiv_fulltext·2025-05-06
Directed Greybox Fuzzing via Large Language Model
Directed Greybox Fuzzing via Large Language Model
Hanxiang Xu
Huazhong University of Science and Technology
China
[email protected]
Yanjie Zhao
Huazhong University of Science and Technology
China
[email protected]
Haoyu Wang
Huazhong University of Science and Technology
China
[email protected]
## Abstract
Directed greybox fuzzing (DGF) focuses on efficiently reaching specific program locations or triggering particular behaviors, making it essential for tasks like vulnerability detection and crash reproduction. However, existing methods often suffer from path explosion and randomness in input mutation, leading to inefficiencies in exploring and exploiting target paths. In this paper, we propose , an automatic framework that leverages the large language model (LLM) to add
http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00031.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-09/msg00062.htmlhttps://github.com/libjpeg-turbo/libjpeg-turbo/commit/3de15e0c344d11d4b90f4a47136467053eb2d09ahttps://github.com/libjpeg-turbo/libjpeg-turbo/issues/433https://lists.debian.org/debian-lts-announce/2020/07/msg00033.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/P4D6KNUY7YANSPH7SVQ44PJKSABFKAUB/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/U6563YHSVZK24MPJXGJVK3CQG7JVWZGK/https://security.gentoo.org/glsa/202010-03https://usn.ubuntu.com/4386-1/http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00031.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-09/msg00062.htmlhttps://github.com/libjpeg-turbo/libjpeg-turbo/commit/3de15e0c344d11d4b90f4a47136467053eb2d09ahttps://github.com/libjpeg-turbo/libjpeg-turbo/issues/433https://lists.debian.org/debian-lts-announce/2020/07/msg00033.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/P4D6KNUY7YANSPH7SVQ44PJKSABFKAUB/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/U6563YHSVZK24MPJXGJVK3CQG7JVWZGK/https://security.gentoo.org/glsa/202010-03https://usn.ubuntu.com/4386-1/
2020-06-03
Published