NULL pointer dereference in libvips - CVE-2018-7998
Published: October 13, 2019
libvips
Detailed vulnerability description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error within the vips_region_generate() function in region.c in the libvips library. A remote attacker can pass specially crafted input to the library and perform a denial of service (DoS) attack.