CVE-2022-38266

Severity CVSS v4.0:
Pending analysis
Type:
CWE-369 Divide By Zero
Publication date:
09/09/2022
Last modified:
18/12/2023

Description

An issue in the Leptonica linked library (v1.79.0) allows attackers to cause an arithmetic exception leading to a Denial of Service (DoS) via a crafted JPEG file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tesseract_project:tesseract:5.0.0:alpha-20210401:*:*:*:*:*:*
cpe:2.3:a:leptonica:leptonica:*:*:*:*:*:*:*:* 1.80.0 (excluding)
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*