Vulnerability Details CVE-2021-39517
An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function BlockBitmapRequester::ReconstructUnsampled() located in blockbitmaprequester.cpp. It allows an attacker to cause Denial of Service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 49.3%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.3
Products affected by CVE-2021-39517
-
-
cpe:2.3:a:jpeg:libjpeg:1.63
-
cpe:2.3:a:jpeg:libjpeg:1.66
-
cpe:2.3:a:jpeg:libjpeg:2022-06-15