#VU67590 Out-of-bounds write in libjpeg-turbo - CVE-2021-46822
Published: September 22, 2022
libjpeg-turbo
The libjpeg-turbo Project
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a boundary error when processing images within the get_word_rgb_row() function in rdppm.c. A remote attacker can pass a specially crafted file to the affected software, trigger an out-of-bounds write and execute arbitrary code on the target system.