Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-10505

Опубликовано: 30 авг. 2017
Источник: debian
EPSS Низкий

Описание

NULL pointer dereference vulnerabilities in the imagetopnm function in convert.c, sycc444_to_rgb function in color.c, color_esycc_to_rgb function in color.c, and sycc422_to_rgb function in color.c in OpenJPEG before 2.2.0 allow remote attackers to cause a denial of service (application crash) via crafted j2k files.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openjpeg2unfixedpackage

Примечания

  • https://github.com/uclouvain/openjpeg/issues/776

  • https://github.com/uclouvain/openjpeg/issues/784

  • https://github.com/uclouvain/openjpeg/issues/785

  • https://github.com/uclouvain/openjpeg/issues/792

EPSS

Процентиль: 71%
0.00656
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 8 лет назад

NULL pointer dereference vulnerabilities in the imagetopnm function in convert.c, sycc444_to_rgb function in color.c, color_esycc_to_rgb function in color.c, and sycc422_to_rgb function in color.c in OpenJPEG before 2.2.0 allow remote attackers to cause a denial of service (application crash) via crafted j2k files.

CVSS3: 3.3
redhat
больше 8 лет назад

NULL pointer dereference vulnerabilities in the imagetopnm function in convert.c, sycc444_to_rgb function in color.c, color_esycc_to_rgb function in color.c, and sycc422_to_rgb function in color.c in OpenJPEG before 2.2.0 allow remote attackers to cause a denial of service (application crash) via crafted j2k files.

CVSS3: 6.5
nvd
больше 8 лет назад

NULL pointer dereference vulnerabilities in the imagetopnm function in convert.c, sycc444_to_rgb function in color.c, color_esycc_to_rgb function in color.c, and sycc422_to_rgb function in color.c in OpenJPEG before 2.2.0 allow remote attackers to cause a denial of service (application crash) via crafted j2k files.

CVSS3: 6.5
github
больше 3 лет назад

NULL pointer dereference vulnerabilities in the imagetopnm function in convert.c, sycc444_to_rgb function in color.c, color_esycc_to_rgb function in color.c, and sycc422_to_rgb function in color.c in OpenJPEG before 2.2.0 allow remote attackers to cause a denial of service (application crash) via crafted j2k files.

EPSS

Процентиль: 71%
0.00656
Низкий