CVE-2018-1152
Summary
| CVE | CVE-2018-1152 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-06-18 14:29:00 UTC |
| Updated | 2020-07-31 21:15:00 UTC |
| Description | libjpeg-turbo 1.5.90 is vulnerable to a denial of service vulnerability caused by a divide by zero when processing a crafted BMP image. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [R1] libturbo-jpeg Denial of Service - Research Advisory | Tenable® |
MISC |
www.tenable.com |
Third Party Advisory |
| [security-announce] openSUSE-SU-2019:1343-1: moderate: Security update f |
SUSE |
lists.opensuse.org |
|
| [SECURITY] [DLA 1638-1] libjpeg-turbo security update |
MLIST |
lists.debian.org |
Mailing List, Third Party Advisory |
| [SECURITY] [DLA 2302-1] libjpeg-turbo security update |
MLIST |
lists.debian.org |
|
| tjLoadImage(): Fix FPE triggered by malformed BMP · libjpeg-turbo/libjpeg-turbo@43e84cf · GitHub |
CONFIRM |
github.com |
Patch, Third Party Advisory |
| libjpeg-turbo CVE-2018-1152 Remote Denial of Service Vulnerability |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| [security-announce] openSUSE-SU-2019:1118-1: moderate: Security update f |
SUSE |
lists.opensuse.org |
|
| USN-3706-2: libjpeg-turbo vulnerabilities | Ubuntu security notices |
UBUNTU |
usn.ubuntu.com |
Third Party Advisory |
| USN-3706-1: libjpeg-turbo vulnerabilities | Ubuntu security notices |
UBUNTU |
usn.ubuntu.com |
Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 500301 Alpine Linux Security Update for libjpeg-turbo
- 504068 Alpine Linux Security Update for libjpeg-turbo