Ijg
2 CVEs tracked since 2020. Since Jun 2020, none of them reached CISA KEV.
Ijg CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2020-06 | 2 | 0 |
Products
The products that kept showing up in Ijg's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 6 most recently published vulnerabilities affecting Ijg.
- CVE-2020-14152In IJG JPEG (aka libjpeg) before 9d, jpeg_mem_available() in jmemnobs.c in djpeg does not honor the max_memory_to_use setting, possibly causing excessive memory consumption.7.1
- CVE-2020-14153In IJG JPEG (aka libjpeg) from version 8 through 9c, jdhuff.c has an out-of-bounds array read for certain table pointers.7.1
- CVE-2018-11813libjpeg 9c has a large loop because read_pixel in rdtarga.c mishandles EOF.7.5
- CVE-2018-11212An issue was discovered in libjpeg 9a and 9d. The alloc_sarray function in jmemmgr.c allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted file.6.5
- CVE-2018-11214An issue was discovered in libjpeg 9a. The get_text_rgb_row function in rdppm.c allows remote attackers to cause a denial of service (Segmentation fault) via a crafted file.6.5
- CVE-2018-11213An issue was discovered in libjpeg 9a. The get_text_gray_row function in rdppm.c allows remote attackers to cause a denial of service (Segmentation fault) via a crafted file.6.5
The record
- Peak rank
- #184 in Jun 2020
- Busiest month shown
- Jun 2020, 2 CVEs
- Months with a KEV entry
- 0 since Jun 2020
- Monthly snapshots
- 1 since 2020