Description
In DjVuLibre 3.5.27, the sorting functionality (aka GArrayTemplate<TYPE>::sort) allows attackers to cause a denial-of-service (application crash due to an Uncontrolled Recursion) by crafting a PBM image file that is mishandled in libdjvu/GContainer.h.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1902-1 | djvulibre security update |
Debian DLA |
DLA-2667-1 | djvulibre security update |
Debian DSA |
DSA-5032-1 | djvulibre security update |
EUVD |
EUVD-2019-6211 | In DjVuLibre 3.5.27, the sorting functionality (aka GArrayTemplate<TYPE>::sort) allows attackers to cause a denial-of-service (application crash due to an Uncontrolled Recursion) by crafting a PBM image file that is mishandled in libdjvu/GContainer.h. |
Ubuntu USN |
USN-4198-1 | DjVuLibre vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T00:42:03.711Z
Reserved: 2019-08-18T00:00:00.000Z
Link: CVE-2019-15144
No data.
Status : Modified
Published: 2019-08-18T19:15:09.967
Modified: 2024-11-21T04:28:09.207
Link: CVE-2019-15144
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD
Ubuntu USN