jpegoptim v1.5.2 was discovered to contain a heap overflow in the optimize function at jpegoptim.c.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://github.com/tjko/jpegoptim/issues/132 | issue tracking patch exploit third party advisory |
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/66ZW65INCWSQYIT5E6N6I6PE5D7R6EK7/ | vendor advisory |