CVE-2020-35538: Libjpeg-Turbo
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
A crafted input file could cause a null pointer dereference in jcopy_sample_rows() when processed by libjpeg-turbo.
Affected products
- Libjpeg-Turbo Libjpeg-Turbo: version 2.0.5 only
Published 2022-08-31. Last modified 2026-06-17.