[Bug 1203335] New: VUL-0: CVE-2022-38266: tesseract-ocr: arithmetic exception leading to a Denial of Service (DoS) via a crafted JPEG file in Leptonica linked lib
http://bugzilla.opensuse.org/show_bug.cgi?id=1203335 Bug ID: 1203335 Summary: VUL-0: CVE-2022-38266: tesseract-ocr: arithmetic exception leading to a Denial of Service (DoS) via a crafted JPEG file in Leptonica linked lib Classification: openSUSE Product: openSUSE Distribution Version: Leap 15.4 Hardware: Other URL: https://smash.suse.de/issue/342084/ OS: Other Status: NEW Severity: Normal Priority: P5 - None Component: Security Assignee: hiwatari.seiji@gmail.com Reporter: thomas.leroy@suse.com QA Contact: security-team@suse.de Found By: Security Response Team Blocker: --- CVE-2022-38266 An issue in the Leptonica linked library (v1.79.0) in Tesseract v5.0.0 allows attackers to cause an arithmetic exception leading to a Denial of Service (DoS) via a crafted JPEG file. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-38266 https://www.cve.org/CVERecord?id=CVE-2022-38266 https://github.com/tesseract-ocr/tesseract/issues/3498 http://www.cvedetails.com/cve/CVE-2022-38266/ -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1203335 http://bugzilla.opensuse.org/show_bug.cgi?id=1203335#c1 --- Comment #1 from Thomas Leroy <thomas.leroy@suse.com> --- Affected: - openSUSE:Backports:SLE-15-SP3 - openSUSE:Backports:SLE-15-SP4 - openSUSE:Factory -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com