CVE-2019-6976

libvips before 8.7.4 generates output images from uninitialized memory locations when processing corrupted input image data because iofuncs/memory.c does not zero out allocated memory. This can result in leaking raw process memory contents through the output image.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:libvips_project:libvips:*:*:*:*:*:*:*:*

Information

Published : 2019-01-26 15:29

Updated : 2020-08-24 10:37


NVD link : CVE-2019-6976

Mitre link : CVE-2019-6976


JSON object : View

CWE
CWE-908

Use of Uninitialized Resource

Advertisement

dedicated server usa

Products Affected

libvips_project

  • libvips