VYPR
High severity8.8OSV Advisory· Published May 24, 2018· Updated Jun 17, 2026

CVE-2018-11416

CVE-2018-11416

Description

jpegoptim.c in jpegoptim 1.4.5 (fixed in 1.4.6) has an invalid use of realloc() and free(), which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Tjko/JpegoptimOSV2 versions
    RELEASE.1.2.0, RELEASE.1.2.1, RELEASE.1.2.2, …+ 1 more
    • (no CPE)range: RELEASE.1.2.0, RELEASE.1.2.1, RELEASE.1.2.2, …
    • (no CPE)range: =1.4.5

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.