Vulnerabilities > CVE-2018-11416 - Double Free vulnerability in Jpegoptim Project Jpegoptim 1.4.5
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
jpegoptim.c in jpegoptim 1.4.5 (fixed in 1.4.6) has an invalid use of realloc() and free(), which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |