Main
Vulnerability Database
Exploits
ID:3781 - Exploit for Buffer overflow in libjpeg-turbo - CVE-2017-9614
ID:3781 - Exploit for Buffer overflow in libjpeg-turbo - CVE-2017-9614
Published: August 9, 2020
Vulnerability identifier: #VU38641
Vulnerability risk: High
CVE-ID: CVE-2017-9614
CWE-ID: CWE-119
Exploitation vector: Remote access
Vulnerable software:
libjpeg-turbo
libjpeg-turbo
Link to public exploit:
Vulnerability description
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
The fill_input_buffer function in jdatasrc.c in libjpeg-turbo 1.5.1 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via a crafted jpg file.
Remediation
Install update from vendor's website.