libjpeg-turbo 1.5.90 is vulnerable to a denial of service vulnerability caused by a divide by zero when processing a crafted BMP image.
{ "vanir_signatures": [ { "source": "https://github.com/libjpeg-turbo/libjpeg-turbo/commit/43e84cff1bb2bd8293066f6ac4eb0df61ddddbc6", "deprecated": false, "signature_version": "v1", "signature_type": "Line", "digest": { "line_hashes": [ "129780747376625381667775847119624228235", "227068836745747627774619749071608887311", "34225397560487323254076009200324745625", "106117018631478627825106329696271503556" ], "threshold": 0.9 }, "id": "CVE-2018-1152-29506a03", "target": { "file": "rdbmp.c" } }, { "source": "https://github.com/libjpeg-turbo/libjpeg-turbo/commit/43e84cff1bb2bd8293066f6ac4eb0df61ddddbc6", "deprecated": false, "signature_version": "v1", "signature_type": "Function", "digest": { "function_hash": "184743128116255845782783724918916497301", "length": 5452.0 }, "id": "CVE-2018-1152-47a62e9f", "target": { "function": "start_input_bmp", "file": "rdbmp.c" } } ] }