5
CVSSv2

CVE-2006-3005

Published: 13/06/2006 Updated: 20/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The JPEG library in media-libs/jpeg prior to 6b-r7 on Gentoo Linux is built without the -maxmem feature, which could allow context-dependent malicious users to cause a denial of service (memory exhaustion) via a crafted JPEG file that exceeds the intended memory limits.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gentoo media-libs jpeg 6b

gentoo linux

Vendor Advisories

Debian Bug report logs - #373672 libjpeg-mmx: CVE-2006-3005: memory exhaustion Package: libjpeg-mmx; Maintainer for libjpeg-mmx is (unknown); Reported by: Alec Berryman <alec@thenednet> Date: Wed, 14 Jun 2006 23:03:07 UTC Severity: important Tags: patch, security Done: Matej Vela <vela@debianorg> Bug is archived ...