Debian Libjpeg-Turbo vulnerabilities
25 known vulnerabilities affecting debian/libjpeg-turbo.
Total CVEs
25
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM6LOW17
Vulnerabilities
Page 2 of 2
CVE-2016-6702LOWCVSS 7.82016
CVE-2016-6702 [HIGH] CVE-2016-6702: libjpeg-turbo - A remote code execution vulnerability in libjpeg in Android 4.x before 4.4.4, 5....
A remote code execution vulnerability in libjpeg in Android 4.x before 4.4.4, 5.0.x before 5.0.2, and 5.1.x before 5.1.1 could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses libjpeg. Andro
debian
CVE-2014-9092MEDIUMCVSS 6.5fixed in libjpeg-turbo 1:1.3.1-11 (bookworm)2014
CVE-2014-9092 [MEDIUM] CVE-2014-9092: libjpeg-turbo - libjpeg-turbo before 1.3.1 allows remote attackers to cause a denial of service ...
libjpeg-turbo before 1.3.1 allows remote attackers to cause a denial of service (crash) via a crafted JPEG file, related to the Exif marker.
Scope: local
bookworm: resolved (fixed in 1:1.3.1-11)
bullseye: resolved (fixed in 1:1.3.1-11)
forky: resolved (fixed in 1:1.3.1-11)
sid: resolved (fixed in 1:1.3.1-11)
trixie: resolved (fixed in 1:1.3.1-11)
debian
CVE-2013-6629LOWCVSS 5.0fixed in libjpeg-turbo 1.3.0-3 (bookworm)2013
CVE-2013-6629 [MEDIUM] CVE-2013-6629: libjpeg-turbo - The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo throu...
The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of component data during the reading of segments that follow Start Of Scan (SOS) JPEG markers, which allows remote attackers to obtain sensitive informat
debian
CVE-2013-6630LOWCVSS 5.0fixed in libjpeg-turbo 1.3.0-3 (bookworm)2013
CVE-2013-6630 [MEDIUM] CVE-2013-6630: libjpeg-turbo - The get_dht function in jdmarker.c in libjpeg-turbo through 1.3.0, as used in Go...
The get_dht function in jdmarker.c in libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48 and other products, does not set all elements of a certain Huffman value array during the reading of segments that follow Define Huffman Table (DHT) JPEG markers, which allows remote attackers to obtain sensitive information from uninitialized memory
debian
CVE-2012-2806LOWCVSS 8.82012
CVE-2012-2806 [HIGH] CVE-2012-2806: libjpeg-turbo - Heap-based buffer overflow in the get_sos function in jdmarker.c in libjpeg-turb...
Heap-based buffer overflow in the get_sos function in jdmarker.c in libjpeg-turbo 1.2.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a large component count in the header of a JPEG image.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
debian
← Previous2 / 2