Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-36692

Опубликовано: 30 авг. 2021
Источник: debian
EPSS Низкий

Описание

libjxl v0.3.7 is affected by a Divide By Zero in issue in lib/extras/codec_apng.cc jxl::DecodeImageAPNG(). When encoding a malicous APNG file using cjxl, an attacker can trigger a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jpeg-xlnot-affectedpackage

Примечания

  • https://github.com/libjxl/libjxl/issues/308

  • https://github.com/libjxl/libjxl/pull/313

  • https://github.com/libjxl/libjxl/commit/7dfa400ded53919d986c5d3d23446a09e0cf481b (v0.5)

EPSS

Процентиль: 54%
0.00312
Низкий

Связанные уязвимости

CVSS3: 6.5
nvd
больше 4 лет назад

libjxl v0.3.7 is affected by a Divide By Zero in issue in lib/extras/codec_apng.cc jxl::DecodeImageAPNG(). When encoding a malicous APNG file using cjxl, an attacker can trigger a denial of service.

github
больше 3 лет назад

libjxl v0.3.7 is affected by a Divide By Zero in issue in lib/extras/codec_apng.cc jxl::DecodeImageAPNG(). When encoding a malicous APNG file using cjxl, an attacker can trigger a denial of service.

EPSS

Процентиль: 54%
0.00312
Низкий