Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-8871

Опубликовано: 21 сент. 2016
Источник: debian

Описание

Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openjpeg2fixed2.1.1-1package
openjpegnot-affectedpackage

Примечания

  • https://github.com/uclouvain/openjpeg/commit/940100c28ae28931722290794889cf84a92c5f6f

  • https://github.com/uclouvain/openjpeg/issues/563

  • https://bugzilla.redhat.com/show_bug.cgi?id=1263359

  • https://www.openwall.com/lists/oss-security/2015/09/15/4

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 9 лет назад

Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors.

redhat
больше 10 лет назад

Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors.

CVSS3: 9.8
nvd
больше 9 лет назад

Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors.

CVSS3: 9.8
github
больше 3 лет назад

Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors.

suse-cvrf
больше 8 лет назад

Security update for openjpeg2