Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-0384

Опубликовано: 18 нояб. 2020
Источник: redhat
CVSS3: 0

Описание

[REJECTED CVE] A vulnerability has been identied in libjpeg-turbo in read_and_discard_scanlines function of jdapistd.c file. There is a possible null pointer exception due to a missing NULL check. This could lead to remote denial of service with no additional execution privileges needed.

Отчет

Red Hat Product Security does not consider this to be a vulnerability. It is not practically exploitable.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libjpeg-turboNot affected
Red Hat Enterprise Linux 7libjpeg-turboNot affected
Red Hat Enterprise Linux 8libjpeg-turboNot affected
Red Hat Enterprise Linux 9libjpeg-turboNot affected

Показывать по

Дополнительная информация

Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=1938345libjpeg-turbo: NULL pointer dereference in read_and_discard_scanlines function in jdapistd.c

0 Low

CVSS3

Связанные уязвимости

ubuntu
почти 5 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

nvd
почти 5 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

github
больше 3 лет назад

In read_and_discard_scanlines of jdapistd.c, there is a possible null pointer exception due to a missing NULL check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-173702583

0 Low

CVSS3