Vulnerabilities > CVE-2021-29390 - Out-of-bounds Write vulnerability in multiple products

047910
CVSS 7.1 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
LOW
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
libjpeg-turbo
fedoraproject
CWE-787

Summary

libjpeg-turbo version 2.0.90 has a heap-based buffer over-read (2 bytes) in decompress_smooth_data in jdcoefct.c.

Common Weakness Enumeration (CWE)