GHSA-xgw2-h7jv-85pmMediumCVSS 6.5
An issue in the Leptonica linked library (v1.79.0) in Tesseract v5.0.0 allows attackers to cause...
🔗 CVE IDs covered (1)
📋 Description
An issue in the Leptonica linked library (v1.79.0) in Tesseract v5.0.0 allows attackers to cause an arithmetic exception leading to a Denial of Service (DoS) via a crafted JPEG file.
🔗 References (6)
- https://nvd.nist.gov/vuln/detail/CVE-2022-38266
- https://github.com/tesseract-ocr/tesseract/issues/3498
- https://github.com/DanBloomberg/leptonica/commit/f062b42c0ea8dddebdc6a152fd16152de215d614
- https://lists.debian.org/debian-lts-announce/2022/12/msg00018.html
- https://security.gentoo.org/glsa/202312-01
- https://github.com/advisories/GHSA-xgw2-h7jv-85pm