diff options
author | Baruch Siach <baruch@tkos.co.il> | 2019-02-12 15:28:27 +0200 |
---|---|---|
committer | Peter Korsgaard <peter@korsgaard.com> | 2019-02-12 19:59:46 +0100 |
commit | f60925beda57b67d0ce9c8bd5fc4b237f09e2024 (patch) | |
tree | bf0df04e7e1a2933c83fdcaff09381a487a715e6 /package/docker-engine | |
parent | 7fe3741bc4197f6bff48236f357f5db1269586c7 (diff) | |
download | buildroot-f60925beda57b67d0ce9c8bd5fc4b237f09e2024.tar.gz buildroot-f60925beda57b67d0ce9c8bd5fc4b237f09e2024.zip |
package/jpeg-turbo: add upstream security fixes
CVE-2018-20330: Integer overflow causing segfault occurred when
attempting to load a BMP file with more than 1 billion pixels using the
`tjLoadImage()` function.
CVE-2018-19664: Buffer overrun occurred when attempting to decompress a
specially-crafted malformed JPEG image to a 256-color BMP using djpeg.
Cc: Murat Demirten <mdemirten@yh.com.tr>
Signed-off-by: Baruch Siach <baruch@tkos.co.il>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Diffstat (limited to 'package/docker-engine')
0 files changed, 0 insertions, 0 deletions