Lucene search

K
cvelistRedhatCVELIST:CVE-2020-35538
HistoryAug 31, 2022 - 3:33 p.m.

CVE-2020-35538

2022-08-3115:33:04
CWE-476
redhat
www.cve.org
1
input file
null pointer
libjpeg-turbo

5.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

23.6%

A crafted input file could cause a null pointer dereference in jcopy_sample_rows() when processed by libjpeg-turbo.

CNA Affected

[
  {
    "product": "libjpeg-turbo",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "libjpeg-turbo 2.0.5 onwards"
      }
    ]
  }
]

5.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

23.6%