The PPM reader in libjpeg-turbo through 2.0.90 mishandles use of tjLoadImage for loading a 16-bit binary PPM file into a grayscale buffer and loading a 16-bit binary PGM file into an RGB buffer. This is related to a heap-based buffer overflow in the get_word_rgb_row function in rdppm.c.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-06-18T15:27:44

Updated: 2024-08-04T05:17:42.633Z

Reserved: 2022-06-18T00:00:00

Link: CVE-2021-46822

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-06-18T16:15:08.110

Modified: 2022-08-15T15:52:58.887

Link: CVE-2021-46822

cve-icon Redhat

Severity : Moderate

Publid Date: 2021-04-07T00:00:00Z

Links: CVE-2021-46822 - Bugzilla