An issue was discovered in Dropbox Lepton 1.2.1. The validateAndCompress function in validation.cc allows remote attackers to cause a denial of service (SIGFPE and application crash) via a malformed file.
{ "binaries": [ { "binary_name": "lepton", "binary_version": "1.2.1+20170405-3build1" } ] }