Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-27842

Опубликовано: 05 янв. 2021
Источник: debian
EPSS Низкий

Описание

There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg could cause a null pointer dereference. The highest impact of this flaw is to application availability.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openjpeg2fixed2.4.0-1package

Примечания

  • https://github.com/uclouvain/openjpeg/issues/1294

  • Fixed by: https://github.com/uclouvain/openjpeg/commit/fbd30b064f8f9607d500437b6fedc41431fd6cdc (v2.4.0)

EPSS

Процентиль: 21%
0.00066
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 4 лет назад

There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg could cause a null pointer dereference. The highest impact of this flaw is to application availability.

CVSS3: 5.5
redhat
больше 4 лет назад

There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg could cause a null pointer dereference. The highest impact of this flaw is to application availability.

CVSS3: 5.5
nvd
больше 4 лет назад

There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg could cause a null pointer dereference. The highest impact of this flaw is to application availability.

CVSS3: 5.5
msrc
11 месяцев назад

Описание отсутствует

CVSS3: 5.5
github
около 3 лет назад

There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg could cause a null pointer dereference. The highest impact of this flaw is to application availability.

EPSS

Процентиль: 21%
0.00066
Низкий