← Back to CVE List

CVE-2019-13960

Published: 2019-07-18T19:15Z
Last Modified: 2024-11-21T04:25Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In libjpeg-turbo 2.0.2, a large amount of memory can be used during processing of an invalid progressive JPEG image containing incorrect width and height values in the image header. NOTE: the vendor's expectation, for use cases in which this memory usage would be a denial of service, is that the application should interpret libjpeg warnings as fatal errors (aborting decompression) and/or set limits on resource consumption or image sizes > MITRE Terms of Use apply – see LICENSE‑MITRE.txt