USN-4386-1: libjpeg-turbo vulnerability
It was discovered that libjpeg-turbo incorrectly handled certain PPM files. An attacker could possibly use this issue to access sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is USN-4386-1.
What is the title of the vulnerability?
The title of the vulnerability is USN-4386-1: libjpeg-turbo vulnerability.
How does the libjpeg-turbo vulnerability affect systems?
The libjpeg-turbo vulnerability allows attackers to access sensitive information.
Which software versions are affected by this vulnerability?
The affected software versions are libjpeg-turbo8 2.0.3-0ubuntu1.20.04.1, libjpeg-turbo8 2.0.3-0ubuntu1.19.10.1, libjpeg-turbo8 1.5.2-0ubuntu5.18.04.4, libjpeg-turbo8 1.4.2-0ubuntu3.4, libjpeg-turbo8 1.3.0-0ubuntu2.1+esm1, and libjpeg-turbo8 1.1.90+svn733-0ubuntu4.6.
How can I fix the libjpeg-turbo vulnerability?
To fix the libjpeg-turbo vulnerability, update to the latest version of libjpeg-turbo8. The remedy versions for each affected software version are: 2.0.3-0ubuntu1.20.04.1, 2.0.3-0ubuntu1.19.10.1, 1.5.2-0ubuntu5.18.04.4, 1.4.2-0ubuntu3.4, 1.3.0-0ubuntu2.1+esm1, and 1.1.90+svn733-0ubuntu4.6.