What the vulnerability does

01Description

Uncontrolled resource consumption in `jpeg-js` before 0.4.0 may allow attacker to launch denial of service attacks using specially a crafted JPEG image.

Key dates

02Disclosure timeline

July 24, 2020 CVE published
August 4, 2024 Record updated