Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

libjpeg-turbo: CVE-2020-13790 #2190

Closed
3 tasks done
KexyBiscuit opened this issue Jun 10, 2020 · 2 comments
Closed
3 tasks done

libjpeg-turbo: CVE-2020-13790 #2190

KexyBiscuit opened this issue Jun 10, 2020 · 2 comments
Labels
aosa-pending Pending AOSA (AOSC OS Security Advisory) assignment security Topic/issue involves a security issue/fixed

Comments

@KexyBiscuit
Copy link
Member

KexyBiscuit commented Jun 10, 2020

CVE IDs: CVE-2020-13790

Other security advisory IDs: USN-4386-1

Description: libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.

Patches: rdppm.c: Fix buf overrun caused by bad binary PPM

PoC(s): Heap-based buffer over-read in get_rgb_row() in rdppm.c

Architectural progress:

  • AMD64 amd64
    • 32-bit Optional Environment optenv32
  • AArch64 arm64
@KexyBiscuit KexyBiscuit added security Topic/issue involves a security issue/fixed to-stable labels Jun 10, 2020
@KexyBiscuit KexyBiscuit added this to the Summer 2020 milestone Jun 10, 2020
@MingcongBai
Copy link
Member

All done. Closing.

@l2dy Please assign an AOSA.

@MingcongBai MingcongBai added the aosa-pending Pending AOSA (AOSC OS Security Advisory) assignment label Jul 17, 2020
@l2dy
Copy link
Member

l2dy commented Aug 3, 2020

Use AOSA-2020-0133.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
aosa-pending Pending AOSA (AOSC OS Security Advisory) assignment security Topic/issue involves a security issue/fixed
Projects
None yet
Development

No branches or pull requests

3 participants