Уязвимость CVE-2013-6630: Информация

Описание

The get_dht function in jdmarker.c in libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48 and other products, does not set all elements of a certain Huffman value array during the reading of segments that follow Define Huffman Table (DHT) JPEG markers, which allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted JPEG image.

Важность: MEDIUM (5,0)

Опубликовано: 19 ноября 2013 г.
Изменено: 7 ноября 2023 г.
Идентификатор типа ошибки: CWE-189

Исправленные пакеты

Имя пакета
Ветка
Исправлено в версии
Версия в репозитории
Errata ID
№ Задания
Состояние
chromiumsisyphus31.0.1650.57-alt1.r235101124.0.6367.155-alt1ALT-PU-2013-1119-1108603Исправлено
chromiump1031.0.1650.57-alt1.r235101119.0.6045.159-alt0.p10.1ALT-PU-2013-1119-1108603Исправлено
chromiump931.0.1650.57-alt1.r23510197.0.4692.99-alt0.p9.1ALT-PU-2013-1119-1108603Исправлено
chromiumc10f131.0.1650.57-alt1.r235101110.0.5481.177-alt1.p10.1ALT-PU-2013-1119-1108603Исправлено
chromiumc9f231.0.1650.57-alt1.r23510184.0.4147.105-alt1.1.p9ALT-PU-2013-1119-1108603Исправлено
chromiumc732.0.1700.102-alt0.M70P.138.0.2125.122-alt0.M70C.2ALT-PU-2014-1140-1113152Исправлено
libjpeg-turbosisyphus1.3.1-alt0.13.0.2-alt2.1ALT-PU-2013-1324-1111060Исправлено
libjpeg-turbop101.3.1-alt0.12.1.5.1-alt1.p10.2ALT-PU-2013-1324-1111060Исправлено
libjpeg-turbop91.3.1-alt0.12.0.2-alt1ALT-PU-2013-1324-1111060Исправлено
libjpeg-turboc10f11.3.1-alt0.12.1.2-alt1.2ALT-PU-2013-1324-1111060Исправлено
libjpeg-turboc9f21.3.1-alt0.12.0.2-alt1.c9f2.1ALT-PU-2013-1324-1111060Исправлено

Ссылки на рекомендации, решения и инструменты

    1. Конфигурация 1

      cpe:2.3:a:google:chrome:31.0.1650.22:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.45:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.11:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.33:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.32:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.31:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.28:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.26:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.4:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.2:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.16:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.39:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.41:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.38:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.5:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
      End including
      31.0.1650.47

      cpe:2.3:a:google:chrome:31.0.1650.36:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.43:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.34:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.13:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.44:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.23:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.17:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.19:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.20:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.14:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.10:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.46:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.7:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.37:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.29:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.8:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.25:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.9:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.3:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.12:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.15:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.30:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.35:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.27:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.42:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.6:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.0:*:*:*:*:*:*:*

      cpe:2.3:a:google:chrome:31.0.1650.18:*:*:*:*:*:*:*