JPEG Non-Compliant Marker ID
| Check Point Reference: | CPAI-2012-265 | |
| Date Published: | ||
| Severity: | ||
| Source: | IPS Research Team | |
| Protection Provided by: |
Security Gateway
|
|
|
Who is Vulnerable? Computer users |
||
| Vulnerability Description Multiple possible vulnerabilities have been discovered in JPEG image files (.jpg). |
||
|
Vulnerability Details The vulnerabilities are caused while parsing JPEG files containing illegal marker ID values. Remote attackers may be able to exploit this issue by enticing target users to open a malformed JPEG file containing such elements. Successful exploitation could lead to system compromise. |
Protection Overview
IPS will detect and block the transferring of JPEG files containing illegal marker ID values.
In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.