Unrated severityNVD Advisory· Published May 25, 2023· Updated Jan 16, 2025
CVE-2023-2804
CVE-2023-2804
Description
A heap-based buffer overflow issue was discovered in libjpeg-turbo in h2v2_merged_upsample_internal() function of jdmrgext.c file. The vulnerability can only be exploited with 12-bit data precision for which the range of the sample data type exceeds the valid sample range, hence, an attacker could craft a 12-bit lossless JPEG image that contains out-of-range 12-bit samples. An application attempting to decompress such image using merged upsampling would lead to segmentation fault or buffer overflows, causing an application to crash.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
17(expand)+ 1 more
- (no CPE)
- (no CPE)
- osv-coords15 versionspkg:apk/chainguard/libjpeg-devpkg:apk/chainguard/libjpeg-docpkg:apk/chainguard/libjpeg-turbopkg:apk/chainguard/libjpeg-turbo-devpkg:apk/chainguard/libjpeg-turbo-docpkg:apk/chainguard/libjpeg-turbo-utilspkg:apk/chainguard/libjpeg-utilspkg:apk/wolfi/libjpeg-devpkg:apk/wolfi/libjpeg-docpkg:apk/wolfi/libjpeg-turbopkg:apk/wolfi/libjpeg-turbo-devpkg:apk/wolfi/libjpeg-turbo-docpkg:apk/wolfi/libjpeg-turbo-utilspkg:apk/wolfi/libjpeg-utilspkg:rpm/opensuse/libjpeg-turbo&distro=openSUSE%20Tumbleweed
< 2.1.91-r3+ 14 more
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 2.1.91-r3
- (no CPE)range: < 8.3.2-77.1
Patches
Vulnerability mechanics
References
6- access.redhat.com/security/cve/CVE-2023-2804mitre
- bugzilla.redhat.com/show_bug.cgimitre
- github.com/libjpeg-turbo/libjpeg-turbo/commit/9f756bc67a84d4566bf74a0c2432aa55da404021mitre
- github.com/libjpeg-turbo/libjpeg-turbo/issues/668mitre
- github.com/libjpeg-turbo/libjpeg-turbo/issues/675mitre
- www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01006.htmlmitre
News mentions
0No linked articles in our index yet.