CVE-2021-20205: Divide by Zero
Libjpeg-turbo (versions 2.0.91 and 2.0.90) is vulnerable to a denial of service vulnerability caused by a divide by zero when processing a crafted GIF image.
References: https://github.com/libjpeg-turbo/libjpeg-turbo/issues/493 [https://github.com/libjpeg-turbo/libjpeg-turbo/issues/493 https://github.com/libjpeg-turbo/libjpeg-turbo/commit/1719d12e51641cce5c77e259516649ba5ef6303c
Other sources
Libjpeg-turbo versions 2.0.91 and 2.0.90 is vulnerable to a denial of service vulnerability caused by a divide by zero when processing a crafted GIF image.
— MITRE
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-20205?
CVE-2021-20205 is a vulnerability in Libjpeg-turbo versions 2.0.91 and 2.0.90 that can be exploited to cause a denial of service by triggering a divide by zero when processing a crafted GIF image.
How severe is CVE-2021-20205?
CVE-2021-20205 has a severity score of 6.5 out of 10, which is considered medium severity.
Which software versions are affected by CVE-2021-20205?
Libjpeg-turbo versions 2.0.91 and 2.0.90 are affected by CVE-2021-20205.
How can CVE-2021-20205 be exploited?
CVE-2021-20205 can be exploited by processing a specially crafted GIF image, which triggers a divide by zero and leads to a denial of service.
Where can I find more information about CVE-2021-20205?
You can find more information about CVE-2021-20205 in the following references: [Reference 1](https://bugzilla.redhat.com/show_bug.cgi?id=1937385), [Reference 2](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QMLEY6HLVZAGXIOGGPPUAMRJUA6LB3FD/), [Reference 3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TM3AHZEYGYFEDL6AW5RLEAJNVRWEJDFL/).