CVE Vulnerabilities

CVE-2018-11212

Divide By Zero

Published: May 16, 2018 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
6.5 LOW
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

An issue was discovered in libjpeg 9a and 9d. The alloc_sarray function in jmemmgr.c allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted file.

Weakness

The product divides a value by zero.

Affected Software

NameVendorStart VersionEnd Version
LibjpegIjg9a (including)9a (including)
Red Hat Enterprise Linux 6 SupplementaryRedHatjava-1.8.0-ibm-1:1.8.0.5.30-1jpp.1.el6_10*
Red Hat Enterprise Linux 6 SupplementaryRedHatjava-1.7.1-ibm-1:1.7.1.4.40-1jpp.1.el6_10*
Red Hat Enterprise Linux 7RedHatlibjpeg-turbo-0:1.2.90-8.el7*
Red Hat Enterprise Linux 7 SupplementaryRedHatjava-1.8.0-ibm-1:1.8.0.5.30-1jpp.1.el7*
Red Hat Enterprise Linux 7 SupplementaryRedHatjava-1.7.1-ibm-1:1.7.1.4.40-1jpp.1.el7*
Red Hat Enterprise Linux 8RedHatjava-1.8.0-ibm-1:1.8.0.5.35-3.el8_0*
Red Hat Satellite 5.8RedHatjava-1.8.0-ibm-1:1.8.0.5.30-1jpp.1.el6_10*
Libjpeg-turboUbuntuesm-infra-legacy/trusty*
Libjpeg-turboUbuntutrusty*
Libjpeg-turboUbuntutrusty/esm*
Libjpeg6bUbuntuartful*
Libjpeg6bUbuntubionic*
Libjpeg6bUbuntucosmic*
Libjpeg6bUbuntudevel*
Libjpeg6bUbuntudisco*
Libjpeg6bUbuntueoan*
Libjpeg6bUbuntuesm-apps/bionic*
Libjpeg6bUbuntuesm-apps/focal*
Libjpeg6bUbuntuesm-apps/jammy*
Libjpeg6bUbuntuesm-apps/noble*
Libjpeg6bUbuntuesm-apps/xenial*
Libjpeg6bUbuntuesm-infra-legacy/trusty*
Libjpeg6bUbuntufocal*
Libjpeg6bUbuntugroovy*
Libjpeg6bUbuntuhirsute*
Libjpeg6bUbuntuimpish*
Libjpeg6bUbuntujammy*
Libjpeg6bUbuntukinetic*
Libjpeg6bUbuntulunar*
Libjpeg6bUbuntumantic*
Libjpeg6bUbuntunoble*
Libjpeg6bUbuntuoracular*
Libjpeg6bUbuntuplucky*
Libjpeg6bUbuntuquesting*
Libjpeg6bUbuntutrusty*
Libjpeg6bUbuntutrusty/esm*
Libjpeg6bUbuntuxenial*
Libjpeg9Ubuntuartful*
Libjpeg9Ubuntubionic*
Libjpeg9Ubuntucosmic*
Libjpeg9Ubuntuesm-apps/bionic*
Libjpeg9Ubuntuesm-apps/xenial*
Libjpeg9Ubuntuupstream*
Libjpeg9Ubuntuxenial*

References