Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-5727

Опубликовано: 16 янв. 2018
Источник: debian
EPSS Низкий

Описание

In OpenJPEG 2.3.0, there is an integer overflow vulnerability in the opj_t1_encode_cblks function (openjp2/t1.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openjpeg2fixed2.3.1-1package

Примечания

  • https://github.com/uclouvain/openjpeg/issues/1053

  • https://github.com/rouault/openjpeg/commit/a1d32a596a94280178c44a55d7e

  • ubsan error (integer overflow), no security impact per se and unlikely

  • to trigger any security relevant issue

EPSS

Процентиль: 72%
0.00724
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

In OpenJPEG 2.3.0, there is an integer overflow vulnerability in the opj_t1_encode_cblks function (openjp2/t1.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.

CVSS3: 4.3
redhat
больше 7 лет назад

In OpenJPEG 2.3.0, there is an integer overflow vulnerability in the opj_t1_encode_cblks function (openjp2/t1.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.

CVSS3: 6.5
nvd
больше 7 лет назад

In OpenJPEG 2.3.0, there is an integer overflow vulnerability in the opj_t1_encode_cblks function (openjp2/t1.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.

CVSS3: 6.5
github
около 3 лет назад

In OpenJPEG 2.3.0, there is an integer overflow vulnerability in the opj_t1_encode_cblks function (openjp2/t1.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.

CVSS3: 4.3
fstec
больше 7 лет назад

Уязвимость функции opj_t1_encode_cblks библиотеки для кодирования и декодирования изображений OpenJPEG операционных систем Oracle Solaris, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 72%
0.00724
Низкий