CVE-2013-6630

medium
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

The get_dht function in jdmarker.c in libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48 and other products, does not set all elements of a certain Huffman value array during the reading of segments that follow Define Huffman Table (DHT) JPEG markers, which allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted JPEG image.

References

http://advisories.mageia.org/MGASA-2013-0333.html

http://archives.neohapsis.com/archives/fulldisclosure/2013-11/0080.html

http://git.chromium.org/gitweb/?p=chromium/deps/libjpeg_turbo.git;a=commit;h=32cab49bd4cb1ce069a435fd75f9439c34ddc6f8

http://googlechromereleases.blogspot.com/2013/11/stable-channel-update.html

http://lists.fedoraproject.org/pipermail/package-announce/2013-December/123437.html

http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124108.html

http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124257.html

http://lists.fedoraproject.org/pipermail/package-announce/2014-January/125470.html

http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00025.html

http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00026.html

http://lists.opensuse.org/opensuse-security-announce/2013-12/msg00002.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00085.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00086.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00087.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00119.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00120.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00121.html

http://lists.opensuse.org/opensuse-updates/2014-01/msg00002.html

http://lists.opensuse.org/opensuse-updates/2014-01/msg00042.html

http://rhn.redhat.com/errata/RHSA-2013-1803.html

http://secunia.com/advisories/56175

http://www.debian.org/security/2013/dsa-2799

http://www.mandriva.com/security/advisories?name=MDVSA-2013:273

http://www.mozilla.org/security/announce/2013/mfsa2013-116.html

http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html

http://www.securitytracker.com/id/1029470

http://www.securitytracker.com/id/1029476

http://www.ubuntu.com/usn/USN-2052-1

http://www.ubuntu.com/usn/USN-2053-1

http://www.ubuntu.com/usn/USN-2060-1

https://bugzilla.mozilla.org/show_bug.cgi?id=891693

https://code.google.com/p/chromium/issues/detail?id=299835

https://security.gentoo.org/glsa/201606-03

Details

Source: MITRE

Published: 2013-11-19

Updated: 2016-10-04

Type: CWE-189

Risk Information

CVSS v2

Base Score: 5

Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Impact Score: 2.9

Exploitability Score: 10

Severity: MEDIUM

Vulnerable Software

Configuration 1

OR

cpe:2.3:a:google:chrome:31.0.1650.0:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.2:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.3:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.4:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.5:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.6:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.7:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.8:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.9:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.10:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.11:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.12:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.13:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.14:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.15:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.16:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.17:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.18:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.19:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.20:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.22:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.23:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.25:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.26:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.27:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.28:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.29:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.30:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.31:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.32:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.33:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.34:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.35:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.36:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.37:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.38:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.39:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.41:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.42:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.43:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.44:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.45:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:31.0.1650.46:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* versions up to 31.0.1650.47 (inclusive)

Tenable Plugins

View all (44 total)

IDNameProductFamilySeverity
91480GLSA-201606-03 : libjpeg-turbo: Multiple vulnerabilitiesNessusGentoo Local Security Checks
medium
88873F5 Networks BIG-IP : libjpeg-turbo vulnerability (K62655427)NessusF5 Networks Local Security Checks
medium
75366openSUSE Security Update : chromium (openSUSE-SU-2014:0065-1)NessusSuSE Local Security Checks
critical
75327openSUSE Security Update : seamonkey (openSUSE-SU-2014:0008-1)NessusSuSE Local Security Checks
critical
75241openSUSE Security Update : MozillaFirefox (openSUSE-SU-2013:1918-1)NessusSuSE Local Security Checks
critical
75240openSUSE Security Update : MozillaFirefox (openSUSE-SU-2013:1917-1)NessusSuSE Local Security Checks
critical
75239openSUSE Security Update : MozillaFirefox (openSUSE-SU-2013:1916-1)NessusSuSE Local Security Checks
critical
75225openSUSE Security Update : chromium (openSUSE-SU-2013:1861-1)NessusSuSE Local Security Checks
critical
75213openSUSE Security Update : chromium (openSUSE-SU-2013:1777-1)NessusSuSE Local Security Checks
critical
75212openSUSE Security Update : chromium (openSUSE-SU-2013:1776-1)NessusSuSE Local Security Checks
critical
74868openSUSE Security Update : MozillaThunderbird (openSUSE-SU-2013:1957-1)NessusSuSE Local Security Checks
critical
74867openSUSE Security Update : MozillaThunderbird (openSUSE-SU-2013:1959-1)NessusSuSE Local Security Checks
critical
74866openSUSE Security Update : MozillaThunderbird (openSUSE-SU-2013:1958-1)NessusSuSE Local Security Checks
critical
74402Fedora 20 : mingw-libjpeg-turbo-1.3.1-1.fc20 (2014-6870)NessusFedora Local Security Checks
medium
74400Fedora 19 : mingw-libjpeg-turbo-1.3.1-1.fc19 (2014-6859)NessusFedora Local Security Checks
medium
71903Fedora 19 : libjpeg-turbo-1.2.90-3.fc19 (2013-23722)NessusFedora Local Security Checks
medium
71785Fedora 18 : thunderbird-24.2.0-2.fc18 (2013-23291)NessusFedora Local Security Checks
critical
71627Fedora 20 : libjpeg-turbo-1.3.0-2.fc20 (2013-23749)NessusFedora Local Security Checks
medium
71579Amazon Linux AMI : libjpeg-turbo (ALAS-2013-267)NessusAmazon Linux Local Security Checks
medium
71563Ubuntu 10.04 LTS / 12.04 LTS / 12.10 / 13.04 / 13.10 : libjpeg-turbo, libjpeg6b vulnerabilities (USN-2060-1)NessusUbuntu Local Security Checks
medium
71505Fedora 20 : firefox-26.0-3.fc20 / thunderbird-24.2.0-3.fc20 / xulrunner-26.0-2.fc20 (2013-23519)NessusFedora Local Security Checks
critical
71452FreeBSD : mozilla -- multiple vulnerabilities (dd116b19-64b3-11e3-868f-0025905a4771)NessusFreeBSD Local Security Checks
critical
71448Fedora 19 : thunderbird-24.2.0-2.fc19 (2013-23295)NessusFedora Local Security Checks
critical
71375Ubuntu 12.04 LTS / 12.10 / 13.04 / 13.10 : thunderbird vulnerabilities (USN-2053-1)NessusUbuntu Local Security Checks
critical
71374Ubuntu 12.04 LTS / 12.10 / 13.04 / 13.10 : firefox vulnerabilities (USN-2052-1)NessusUbuntu Local Security Checks
critical
71365Fedora 19 : firefox-26.0-2.fc19 / xulrunner-26.0-1.fc19 (2013-23127)NessusFedora Local Security Checks
critical
71349SeaMonkey < 2.23 Multiple VulnerabilitiesNessusWindows
critical
71348Mozilla Thunderbird < 24.2 Multiple VulnerabilitiesNessusWindows
critical
71347Firefox < 26.0 Multiple VulnerabilitiesNessusWindows
critical
71346Firefox ESR 24.x < 24.2 Multiple VulnerabilitiesNessusWindows
critical
71345Thunderbird < 24.2 Multiple Vulnerabilities (Mac OS X)NessusMacOS X Local Security Checks
critical
71344Firefox < 26.0 Multiple Vulnerabilities (Mac OS X)NessusMacOS X Local Security Checks
critical
71343Firefox ESR 24.x < 24.2 Multiple Vulnerabilities (Mac OS X)NessusMacOS X Local Security Checks
critical
71339Scientific Linux Security Update : libjpeg-turbo on SL6.x i386/x86_64 (20131210)NessusScientific Linux Local Security Checks
medium
71290RHEL 6 : libjpeg-turbo (RHSA-2013:1803)NessusRed Hat Local Security Checks
medium
71287Oracle Linux 6 : libjpeg-turbo (ELSA-2013-1803)NessusOracle Linux Local Security Checks
medium
71271CentOS 6 : libjpeg-turbo (CESA-2013:1803)NessusCentOS Local Security Checks
medium
8059Google Chrome < 31.0.1650.48 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
critical
801611Google Chrome < 31.0.1650.48 Multiple VulnerabilitiesLog Correlation EngineWeb Clients
high
71028Mandriva Linux Security Advisory : libjpeg (MDVSA-2013:273)NessusMandriva Local Security Checks
medium
70986Debian DSA-2799-1 : chromium-browser - several vulnerabilitiesNessusDebian Local Security Checks
critical
70917Google Chrome < 31.0.1650.48 Multiple Vulnerabilities (Mac OS X)NessusMacOS X Local Security Checks
critical
70916Google Chrome < 31.0.1650.48 Multiple VulnerabilitiesNessusWindows
critical
70865FreeBSD : chromium -- multiple vulnerabilities (3bfc7016-4bcc-11e3-b0cf-00262d5ed8ee)NessusFreeBSD Local Security Checks
critical