In libjpeg-turbo 2.0.2, a large amount of memory can be used during processing of an invalid progressive JPEG image containing incorrect width and height values in the image header. NOTE: the vendor's expectation, for use cases in which this memory usage would be a denial of service, is that the application should interpret libjpeg warnings as fatal errors (aborting decompression) and/or set limits on resource consumption or image sizes
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T00:05:44.065Z
Reserved: 2019-07-18T00:00:00
Link: CVE-2019-13960
No data.
Status : Modified
Published: 2019-07-18T19:15:11.600
Modified: 2024-11-21T04:25:47.040
Link: CVE-2019-13960
OpenCVE Enrichment
No data.