Gentoo: GLSA-200606-11: JPEG library: Denial of Service
Summary
Gentoo Linux Security Advisory GLSA 200606-11
https://security.gentoo.org/
Severity: Normal
Title: JPEG library: Denial of Service
Date: June 11, 2006
Bugs: #130889
ID: 200606-11
Synopsis
=======
The JPEG library is vulnerable to a Denial of Service.
Background
=========
The JPEG library is able to load, handle and manipulate images in the
JPEG format.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 media-libs/jpeg < 6b-r7 >= 6b-r7
==========
Tavis Ormandy of the Gentoo Linux Auditing Team discovered that the
vulnerable JPEG library ebuilds compile JPEG without the --maxmem
feature which is not recommended.
Impact
=====
By enticing a user to load...
Resolution
References
Availability
Concerns
Background