A heap-based buffer overflow in cairoimagesurfacecreatefromjpeg() in extensions/cairo_io/cairo-image-surface-jpeg.c in gThumb and Pix allows attackers to cause a crash and potentially execute arbitrary code via a crafted JPEG file (CVE-2019-20326).
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2020-0056.json"