In IJG JPEG (aka libjpeg) before 9d, read_*_pixel() in rdtarga.c in cjpeg mishandles EOF. References: https://bugs.gentoo.org/727908 http://www.ijg.org/files/jpegsrc.v9d.tar.gz
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2020-14151
*** This bug has been marked as a duplicate of bug 1588803 ***
Statement: This flaw was found to be a duplicate of CVE-2018-11813. Please see https://access.redhat.com/security/cve/CVE-2018-11813 for information about affected products and security errata.