Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability was found while fuzzing libbpg 0.9.7. It is a NULL pointer dereference issue due to missing check of the return value of function malloc in the BPG encoder. This vulnerability appeared while converting a malicious JPEG file to BPG.
CVSS Information
N/A
Vulnerability Type
内存缓冲区边界内操作的限制不恰当
Vulnerability Title
libbpg BPG编码器安全漏洞
Vulnerability Description
libbpg是一种新型的图片格式库。BPG encoder是其中的一个BPG格式编码器。 libbpg 0.9.7版本中的BPG编码器的‘image_alloc’函数存在安全漏洞,该漏洞源于程序未能检查malloc函数的返回值。远程攻击者可借助恶意的JPEG文件利用该漏洞导致程序崩溃(空指针逆向引用)。
CVSS Information
N/A
Vulnerability Type
N/A