libjpeg 1.63 has a heap-based buffer over-read in HierarchicalBitmapRequester::FetchRegion in hierarchicalbitmaprequester.cpp because the MCU size can be different between allocation and use.
References
Link | Resource |
---|---|
https://github.com/thorfdbg/libjpeg/issues/71 | Third Party Advisory |
https://github.com/thorfdbg/libjpeg/commit/187035b9726710b4fe11d565c7808975c930895d | Patch Third Party Advisory |
Configurations
Information
Published : 2022-06-02 07:15
Updated : 2022-06-13 07:24
NVD link : CVE-2022-31796
Mitre link : CVE-2022-31796
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
jpeg
- libjpeg