Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-38076

Опубликовано: 09 июл. 2026
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

An integer overflow in the jbig2_arith_iaid_ctx_new() function of Artifex commit cc37d0 allows attackers to cause a Denial of Service (DoS) via a crafted input.

A flaw was found in jbig2dec. An integer overflow vulnerability in the jbig2_arith_iaid_ctx_new() function allows a remote attacker to cause a Denial of Service (DoS) by providing a specially crafted input. This can lead to the affected system becoming unresponsive or crashing, disrupting its normal operation.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10jbig2decFix deferred
Red Hat Enterprise Linux 8jbig2decFix deferred
Red Hat Enterprise Linux 9jbig2decFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2498866jbig2dec: jbig2dec: Denial of Service via crafted input

EPSS

Процентиль: 36%
0.00432
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 месяца назад

An integer overflow in the jbig2_arith_iaid_ctx_new() function of Artifex commit cc37d0 allows attackers to cause a Denial of Service (DoS) via a crafted input.

CVSS3: 7.5
nvd
около 1 месяца назад

An integer overflow in the jbig2_arith_iaid_ctx_new() function of Artifex commit cc37d0 allows attackers to cause a Denial of Service (DoS) via a crafted input.

CVSS3: 7.5
debian
около 1 месяца назад

An integer overflow in the jbig2_arith_iaid_ctx_new() function of Arti ...

CVSS3: 7.5
github
около 1 месяца назад

An integer overflow in the jbig2_arith_iaid_ctx_new() function of Artifex commit cc37d0 allows attackers to cause a Denial of Service (DoS) via a crafted input.

EPSS

Процентиль: 36%
0.00432
Низкий

6.5 Medium

CVSS3