Stack-based buffer overflow in the jbg_dec_in function in libjbig/jbig.c in JBIG-KIT before 2.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted image file.
https://www.cl.cam.ac.uk/~mgk25/jbigkit/CHANGES
https://bugzilla.redhat.com/show_bug.cgi?id=1032273