CVE-2017-7448: Dropbox Lepton
Medium severity, CVSS 5.5. EPSS: 1.2% chance of exploitation in the next 30 days.
The allocate_channel_framebuffer function in uncompressed_components.hh in Dropbox Lepton 1.2.1 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a malformed JPEG image.
Affected products
- Dropbox Lepton: version 1.2.1 only
Published 2017-04-05. Last modified 2026-06-17.