Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26139
HistoryAug 06, 2020 - 9:33 p.m.

Arbtirary Code Execution

2020-08-0621:33:00
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.011 Low

EPSS

Percentile

84.4%

libjpeg-turbo and mozjpeg is vulnerable to arbitrary code execution. A heap-based buffer over-read in get_rgb_row() in rdppm.c allows an attacker to execute arbitrary code on the host OS via a malicious PPM input file.