Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-4796

Опубликовано: 03 фев. 2017
Источник: debian

Описание

Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (crash) via a crafted .j2k file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openjpeg2fixed2.1.1-1package
openjpeg2not-affectedjessiepackage
openjpegremovedpackage
openjpegnot-affectedjessiepackage
openjpegnot-affectedwheezypackage

Примечания

  • https://github.com/uclouvain/openjpeg/commit/162f6199c0cd3ec1c6c6dc65e41b2faab92b2d91

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 9 лет назад

Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (crash) via a crafted .j2k file.

redhat
почти 10 лет назад

Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (crash) via a crafted .j2k file.

CVSS3: 5.5
nvd
около 9 лет назад

Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (crash) via a crafted .j2k file.

CVSS3: 5.5
github
больше 3 лет назад

Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (crash) via a crafted .j2k file.