Bug#1023693: libstb: CVE-2021-37789

2023-03-15 Thread Moritz Mühlenhoff
Am Tue, Nov 08, 2022 at 08:42:05PM +0100 schrieb Moritz Mühlenhoff: > Source: libstb > X-Debbugs-CC: t...@security.debian.org > Severity: important > Tags: security > > Hi, > > The following vulnerability was published for libstb. > > CVE-2021-37789[0]: > | stb_image.h 2.27 has a heap-based

Bug#1023693: libstb: CVE-2021-37789

2022-11-08 Thread Moritz Mühlenhoff
Source: libstb X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for libstb. CVE-2021-37789[0]: | stb_image.h 2.27 has a heap-based buffer over in stbi__jpeg_load, | leading to Information Disclosure or Denial of Service.