Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-17541

Опубликовано: 01 июн. 2021
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.8

Описание

Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component. A remote attacker can send a malformed jpeg file to the service and cause arbitrary code execution or denial of service of the target service.

РелизСтатусПримечание
bionic

released

1.5.2-0ubuntu5.18.04.6
devel

not-affected

esm-infra-legacy/trusty

not-affected

1.3.0-0ubuntu2.1+esm2
esm-infra/bionic

not-affected

1.5.2-0ubuntu5.18.04.6
esm-infra/focal

not-affected

2.0.3-0ubuntu1.20.04.3
esm-infra/xenial

released

1.4.2-0ubuntu3.4+esm1
focal

released

2.0.3-0ubuntu1.20.04.3
groovy

ignored

end of life
hirsute

not-affected

impish

not-affected

Показывать по

EPSS

Процентиль: 67%
0.00564
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
redhat
около 4 лет назад

Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component. A remote attacker can send a malformed jpeg file to the service and cause arbitrary code execution or denial of service of the target service.

CVSS3: 8.8
nvd
около 4 лет назад

Libjpeg-turbo all version have a stack-based buffer overflow in the "transform" component. A remote attacker can send a malformed jpeg file to the service and cause arbitrary code execution or denial of service of the target service.

CVSS3: 8.8
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 8.8
debian
около 4 лет назад

Libjpeg-turbo all version have a stack-based buffer overflow in the "t ...

suse-cvrf
около 4 лет назад

Security update for libjpeg-turbo

EPSS

Процентиль: 67%
0.00564
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3