Heap-Based Buffer Over-Read in jhead by Tjark R. M. L. Seidel
CVE-2020-6624
7.1HIGH
What is CVE-2020-6624?
A heap-based buffer over-read has been identified in jhead, a tool for processing JPEG images. This vulnerability resides in the function process_DQT within the jpgqguess.c file, which can lead to unintended memory access. When exploited, this flaw may allow an attacker to read sensitive data from memory, potentially exposing confidential information. Users of jhead version 3.04 should take immediate measures to update or mitigate this vulnerability to ensure the integrity of their image processing tasks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
