Infinite loop in libjpeg - CVE-2018-11813
Published: January 13, 2020
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to infinite loop in read_pixel() function in rdtarga.c when processing EOF (end-of-line) characters. A remote attacker can use a specially crafted image to consume all available system resources and cause denial of service conditions.
Affected software
Amazon Linux AMI
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
Ubuntu
Opensuse
Fedora
libjpeg-turbo (Alpine package)
libjpeg-turbo8 (Ubuntu package)
libjpeg-turbo-progs (Ubuntu package)
libturbojpeg (Ubuntu package)
libjpeg-turbo-test (Ubuntu package)
libjpeg-turbo
libjpeg62 (Ubuntu package)
Autodesk Infraworks
Dynamic System Analysis (DSA) Preboot
Tanzu Greenplum for Kubernetes
Data Computing Appliance (DCA)
Flex System Chassis Management Module (CMM)
VMware Tanzu Operations Manager
How to mitigate CVE-2018-11813
libjpeg-turbo (Alpine package) - addressed in versions 1.5.3-r2, 1.5.3-r3
Autodesk Infraworks - addressed in versions 2021.2 Hotfix 9, 2023.1 Hotfix 1
Dynamic System Analysis (DSA) Preboot - update to dsyte2z-9.65
libjpeg-turbo8 (Ubuntu package) - addressed in versions 1.4.20ubuntu3.4+esm1, 1.5.2-0ubuntu5.18.04.6, 2.0.3-0ubuntu1.20.04.3
libjpeg-turbo-progs (Ubuntu package) - update to 1.4.20ubuntu3.4+esm1
libturbojpeg (Ubuntu package) - addressed in versions 1.4.20ubuntu3.4+esm1, 1.5.2-0ubuntu5.18.04.6, 2.0.3-0ubuntu1.20.04.3
libjpeg-turbo-test (Ubuntu package) - update to 1.4.20ubuntu3.4+esm1
libjpeg-turbo - update to 1.5.3-5.fc28
Tanzu Greenplum for Kubernetes - update to 2.0.0
Flex System Chassis Management Module (CMM) - update to 2pet16d-2.5.13d
VMware Tanzu Operations Manager - addressed in versions 2.7.25, 2.8.16, 2.9.12, 2.10.39
Data Computing Appliance (DCA) - update to 4.3.0.0
libjpeg62 (Ubuntu package) - update to 6 b14ubuntu1+esm1
External References
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00015.html
- http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00015.html
- https://access.redhat.com/errata/RHSA-2019:2052
- https://github.com/ChijinZ/security_advisories/blob/master/libjpeg-v9c/mail.pdf
- https://github.com/ChijinZ/security_advisories/tree/master/libjpeg-v9c
Related Security Bulletins
- OpenSUSE Linux update for libjpeg-turbo
- OpenSUSE Linux update for libjpeg-turbo
- Amazon Linux AMI update for libjpeg-turbo
- Red Hat update for libjpeg-turbo
- Infinite loop in libjpeg-turbo (Alpine package)
- Ubuntu update for libjpeg6b
- Ubuntu update for libjpeg-turbo
- Ubuntu update for libjpeg-turbo
- Multiple vulnerabilities in Dell EMC Data Computing Appliance (DCA)
- Multiple vulnerabilities in Autodesk InfraWorks
- VMware Tanzu products update for libjpeg-turbo
- Multiple vulnerabilities in IBM Dynamic System Analysis (DSA) Preboot
- Multiple vulnerabilities in IBM Flex System Chassis Management Module (CMM)
- Fedora 28 update for libjpeg-turbo