Loading product vulnerabilities…
Total
3
Critical
0
High
1
Medium
1
CISA KEV
0
jpegoptim v1.5.2 was discovered to contain a heap overflow in the optimize function at jpegoptim.c.
JPEGOPTIM v1.4.7 was discovered to contain a segmentation violation which is caused by a READ memory access at jpegoptim.c.
jpegoptim.c in jpegoptim 1.4.5 (fixed in 1.4.6) has an invalid use of realloc() and free(), which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.