Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-4288

Опубликовано: 16 нояб. 2021
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2021-4288: libjpeg-turbo security and bug fix update (MODERATE)

[1.5.3-12]

  • Add missing license file (#1982572)

[1.5.3-11]

  • Fix CVE-2020-17541 (#1972289)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

libjpeg-turbo

1.5.3-12.el8

libjpeg-turbo-devel

1.5.3-12.el8

libjpeg-turbo-utils

1.5.3-12.el8

turbojpeg

1.5.3-12.el8

turbojpeg-devel

1.5.3-12.el8

Oracle Linux x86_64

libjpeg-turbo

1.5.3-12.el8

libjpeg-turbo-devel

1.5.3-12.el8

libjpeg-turbo-utils

1.5.3-12.el8

turbojpeg

1.5.3-12.el8

turbojpeg-devel

1.5.3-12.el8

Связанные CVE

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 4 лет назад

Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component. A remote attacker can send a malformed jpeg file to the service and cause arbitrary code execution or denial of service of the target service.

CVSS3: 8.8
redhat
около 4 лет назад

Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component. A remote attacker can send a malformed jpeg file to the service and cause arbitrary code execution or denial of service of the target service.

CVSS3: 8.8
nvd
около 4 лет назад

Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component. A remote attacker can send a malformed jpeg file to the service and cause arbitrary code execution or denial of service of the target service.

CVSS3: 8.8
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 8.8
debian
около 4 лет назад

Libjpeg-turbo all version have a stack-based buffer overflow in the "t ...