USN-5405-1: jbig2dec vulnerabilities

Related Vulnerabilities: CVE-2017-9216   CVE-2020-12268  

Several security issues were fixed in jbig2dec.

Details

It was discovered that jbig2dec incorrectly handled memory when parsing
invalid files. An attacker could use this issue to cause jbig2dec to crash,
leading to a denial of service. (CVE-2017-9216)

It was discovered that jbig2dec incorrectly handled memory when processing
untrusted input. An attacker could use this issue to cause a denial of service,
or possibly execute arbitrary code. (CVE-2020-12268)