CVE-2020-13439: Rockcarry Ffjpeg

Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.

ffjpeg through 2020-02-24 has a heap-based buffer over-read in jfif_decode in jfif.c.

Affected products

  • Rockcarry Ffjpeg: up to and including 2020-02-24

Published 2020-05-24. Last modified 2026-06-17.