Uclouvain

Openjpeg

82 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.06%
  • Veröffentlicht 08.12.2017 19:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In OpenJPEG 2.3.0, a stack-based buffer overflow was discovered in the pgxtovolume function in jp3d/convert.c. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly remote code execution.

Exploit
  • EPSS 0.82%
  • Veröffentlicht 18.10.2017 17:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a crafted PDF.

Exploit
  • EPSS 0.79%
  • Veröffentlicht 06.09.2017 18:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A size-validation issue was discovered in opj_j2k_write_sot in lib/openjp2/j2k.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service (heap-based buffer overflow affecting opj_write_bytes_LE i...

  • EPSS 1.09%
  • Veröffentlicht 05.09.2017 16:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A mishandled zero case was discovered in opj_j2k_set_cinema_parameters in lib/openjp2/j2k.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service (heap-based buffer overflow affecting opj_write...

  • EPSS 0.91%
  • Veröffentlicht 05.09.2017 16:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An off-by-one error was discovered in opj_tcd_code_block_enc_allocate_data in lib/openjp2/tcd.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service (heap-based buffer overflow affecting opj_m...

  • EPSS 0.71%
  • Veröffentlicht 30.08.2017 22:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A stack-based buffer overflow was discovered in the pgxtoimage function in bin/jp2/convert.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly remote code execution.

  • EPSS 0.58%
  • Veröffentlicht 30.08.2017 22:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An invalid write access was discovered in bin/jp2/convert.c in OpenJPEG 2.2.0, triggering a crash in the tgatoimage function. The vulnerability may lead to remote denial of service or possibly unspecified other impact.

  • EPSS 0.64%
  • Veröffentlicht 30.08.2017 22:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A heap-based buffer overflow was discovered in the opj_t2_encode_packet function in lib/openjp2/t2.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly unspecified other impact.

  • EPSS 0.66%
  • Veröffentlicht 30.08.2017 09:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

NULL pointer dereference vulnerabilities in the imagetopnm function in convert.c, sycc444_to_rgb function in color.c, color_esycc_to_rgb function in color.c, and sycc422_to_rgb function in color.c in OpenJPEG before 2.2.0 allow remote attackers to ca...

  • EPSS 6.11%
  • Veröffentlicht 30.08.2017 09:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Heap-based buffer overflow vulnerability in the opj_mqc_byteout function in mqc.c in OpenJPEG before 2.2.0 allows remote attackers to cause a denial of service (application crash) via a crafted bmp file.