Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-79f7-6jwc-94qw

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

jpeg-xl v0.3.2 is affected by a heap buffer overflow in /lib/jxl/coeff_order.cc ReadPermutation. When decoding a malicous jxl file using djxl, an attacker can trigger arbitrary code execution or a denial of service.

jpeg-xl v0.3.2 is affected by a heap buffer overflow in /lib/jxl/coeff_order.cc ReadPermutation. When decoding a malicous jxl file using djxl, an attacker can trigger arbitrary code execution or a denial of service.

EPSS

Процентиль: 66%
0.00507
Низкий

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
почти 5 лет назад

jpeg-xl v0.3.2 is affected by a heap buffer overflow in /lib/jxl/coeff_order.cc ReadPermutation. When decoding a malicous jxl file using djxl, an attacker can trigger arbitrary code execution or a denial of service.

CVSS3: 7.8
debian
почти 5 лет назад

jpeg-xl v0.3.2 is affected by a heap buffer overflow in /lib/jxl/coeff ...

EPSS

Процентиль: 66%
0.00507
Низкий

Дефекты

CWE-787