Heap-based buffer overflow in the get_sos function in jdmarker.c in libjpeg-turbo 1.2.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a large component count in the header of a JPEG image.
References
Configurations
History
21 Jan 2025, 20:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 6.8
v3 : 8.8 |
Information
Published : 2012-08-13 20:55
Updated : 2025-04-11 00:51
NVD link : CVE-2012-2806
Mitre link : CVE-2012-2806
CVE.ORG link : CVE-2012-2806
JSON object : View
Products Affected
d.r.commander
- libjpeg-turbo
CWE
CWE-787
Out-of-bounds Write