CVE Database
/

CVE-2017-2575

Back to search

CVE-2017-2575

Published: Aug 22, 2018

Modified: Sep 17, 2024

PUBLISHED

Description

A vulnerability was found while fuzzing libbpg 0.9.7. It is a NULL pointer dereference issue due to missing check of the return value of function malloc in the BPG encoder. This vulnerability appeared while converting a malicious JPEG file to BPG.

VendorProductVersions

Fabrice Bellard

libbpg

affected
0.9.7

Weaknesses (CWE)

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now