Libjpeg-turbo versions 2.0.91 and 2.0.90 is vulnerable to a denial of service vulnerability caused by a divide by zero when processing a crafted GIF image.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1937385 | Issue Tracking Patch Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TM3AHZEYGYFEDL6AW5RLEAJNVRWEJDFL/ | Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QMLEY6HLVZAGXIOGGPPUAMRJUA6LB3FD/ | Third Party Advisory |
Information
Published : 2021-03-10 09:15
Updated : 2021-05-04 12:41
NVD link : CVE-2021-20205
Mitre link : CVE-2021-20205
JSON object : View
CWE
CWE-369
Divide By Zero
Products Affected
libjpeg-turbo
- libjpeg-turbo
fedoraproject
- fedora