VDB

CVE-2020-36281

CVE-2020-36281 PUBLISHED

Leptonica before 1.80.0 allows a heap-based buffer over-read in pixFewColorsOctcubeQuantMixed in colorquant1.c.

EPSS 0.51% · 66.6th percentile

Risk Scores

EPSS Score
0.51%
66.6th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSleptonlib1.78.0-2, 0, 1.79.0-1
Ubuntu:Pro:18.04:LTSleptonlib1.74.4-1, 1.75.3-3ubuntu0.1~esm1, 1.75.3-3
Ubuntu:Pro:14.04:LTSleptonlib1.69-4ubuntu4, 1.69-4ubuntu2, 0
Ubuntu:Pro:16.04:LTSleptonlib0, 1.72-3build1, 1.73-1ubuntu0.1~esm1
Ubuntu:22.04:LTSleptonlib1.79.0-1.1, 1.82.0-3, 1.82.0-3build1

Timeline

  • Mar 12, 2021 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jul 25, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 3, 2021 CVE Updated
  • Dec 27, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›