[Bug 1201212] New: VUL-1: CVE-2022-32325: JPEGOPTIM v1.4.7 was discovered to contain a segmentation violation which is caused by a READ memory access at jpegoptim.c.
https://bugzilla.suse.com/show_bug.cgi?id=1201212 Bug ID: 1201212 Summary: VUL-1: CVE-2022-32325: JPEGOPTIM v1.4.7 was discovered to contain a segmentation violation which is caused by a READ memory access at jpegoptim.c. Classification: openSUSE Product: openSUSE Distribution Version: Leap 15.4 Hardware: Other URL: https://smash.suse.de/issue/336142/ OS: Other Status: NEW Severity: Minor Priority: P5 - None Component: Security Assignee: avvissu@yandex.by Reporter: cathy.hu@suse.com QA Contact: security-team@suse.de Found By: Security Response Team Blocker: --- CVE-2022-32325 JPEGOPTIM v1.4.7 was discovered to contain a segmentation violation which is caused by a READ memory access at jpegoptim.c. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-32325 http://www.cvedetails.com/cve/CVE-2022-32325/ http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32325 https://github.com/tjko/jpegoptim/issues/107 -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1201212 https://bugzilla.suse.com/show_bug.cgi?id=1201212#c1 --- Comment #1 from Hu <cathy.hu@suse.com> --- IMO it is not 100% clear if this is a vulnerability is in JPEGOPTIM and there is not fix yet. Still opening the bug so you are aware in case :) -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1201212 Hu <cathy.hu@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Summary|VUL-1: CVE-2022-32325: |VUL-1: CVE-2022-32325: |JPEGOPTIM v1.4.7 was |jpegoptim: JPEGOPTIM v1.4.7 |discovered to contain a |was discovered to contain a |segmentation violation |segmentation violation |which is caused by a READ |which is caused by a READ |memory access at |memory access at |jpegoptim.c. |jpegoptim.c. -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1201212 Maintenance Robot <maint-coord+maintenance_robot@suse.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Priority|P5 - None |P4 - Low -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com