A vulnerability was found while fuzzing libbpg 0.9.7. It is a NULL pointer dereference issue due to missing check of the return value of function malloc in the BPG encoder. This vulnerability appeared while converting a malicious JPEG file to BPG.
[
{
"product": "libbpg",
"vendor": "Fabrice Bellard",
"versions": [
{
"status": "affected",
"version": "0.9.7"
}
]
}
]