GHSA-v8gq-5grq-9728

    Dashboard / Vulnerabilities / GHSA-v8gq-5grq-9728

    GHSA-v8gq-5grq-9728

    Published: 16 Sept 2022Last Modified: 8 Nov 2023

    Summary: mozjpeg DecompressScanlines::read_scanlines is Unsound

    Details: This issue and vector is similar to [RUSTSEC-2020-0029] of `rgb` crate which `mozjpeg` depends on. Affected versions of `mozjpeg` crate allow creating instances of any type `T` from bytes, and do not correctly constrain `T` to the types for which it is safe to do so. Examples of safety violation possible for a type `T`: * `T` contains a reference type, and it constructs a pointer to an invalid, arbitrary memory address. * `T` requires a safety and/or validity invariant for its construction that may be violated. The issue was fixed in 0.8.19 by using safer types and involving `rgb` dependency bump. [RUSTSEC-2020-0029]: https://rustsec.org/advisories/RUSTSEC-2020-0029.html

    Affected packages

    Package

    Name: mozjpeg

    Purl: pkg:cargo/mozjpeg

    Affected ranges

    Type: SEMVER

    Events:

    Introduced- 0
    Fixed -0.8.19

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    GHSA-v8gq-5grq-9728 | CVE-DB