CVE-2013-6369

Stack-based buffer overflow in the jbg_dec_in function in libjbig/jbig.c in JBIG-KIT before 2.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted image file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:cambridge_enterprise:jbig-kit:*:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:0.5:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:0.6:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:0.7:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:0.8:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:0.9:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:1.0:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:1.1:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:1.2:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:1.3:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:1.4:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:1.5:*:*:*:*:*:*:*
cpe:2.3:a:cambridge_enterprise:jbig-kit:1.6:*:*:*:*:*:*:*

History

21 Nov 2024, 01:59

Type Values Removed Values Added
References () http://secunia.com/advisories/57731 - Vendor Advisory () http://secunia.com/advisories/57731 - Vendor Advisory
References () http://www.securityfocus.com/bid/66697 - () http://www.securityfocus.com/bid/66697 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=1032273 - () https://bugzilla.redhat.com/show_bug.cgi?id=1032273 -
References () https://www.cl.cam.ac.uk/~mgk25/jbigkit/CHANGES - () https://www.cl.cam.ac.uk/~mgk25/jbigkit/CHANGES -

Information

Published : 2014-04-11 14:55

Updated : 2025-04-12 10:46


NVD link : CVE-2013-6369

Mitre link : CVE-2013-6369

CVE.ORG link : CVE-2013-6369


JSON object : View

Products Affected

cambridge_enterprise

  • jbig-kit
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer