Skip to content
Noroxi

jpegoptim project records

3 published records for vendor jpegoptim project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
33.3%
Median publish → KEV
No record has entered KEV

Records by year

  1. 18
  2. 22
  3. 23

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

3 records
  • jpegoptim.c in jpegoptim 1.4.5 (fixed in 1.4.6) has an invalid use of realloc() and free(), which allows remote attackers to cause a denial

    HighCVSS 8.8No exploitEPSS 2%

    jpegoptim project · jpegoptimMay 24, 2018

  • jpegoptim v1.5.2 was discovered to contain a heap overflow in the optimize function at jpegoptim.c.

    HighCVSS 7.8No exploitEPSS 0%

    jpegoptim project · jpegoptimMar 15, 2023

  • JPEGOPTIM v1.4.7 was discovered to contain a segmentation violation which is caused by a READ memory access at jpegoptim.c.

    MediumCVSS 6.5No exploitEPSS 1%

    jpegoptim project · jpegoptimJul 1, 2022