Vulnerabilities/

Infinite loop in jpeg-js

Severity:
High

Description

The package jpeg-js before 0.4.4 is vulnerable to Denial of Service (DoS) where a particular piece of input will cause the program to enter an infinite loop and never return.

Recommendation

Update the jpeg-js package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
jpeg-js
Anything's wrong? Let us know Last updated on January 27, 2023

This issue is available in SmartScanner Professional

See Pricing