Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-13944

Опубликовано: 18 авг. 2025
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2025-13944: openjpeg2 security update (IMPORTANT)

[2.5.2-4.1]

  • fix OpenJPEG OOB heap memory write (CVE-2025-54874)

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

openjpeg2

2.5.2-4.el10_0.1

openjpeg2-devel

2.5.2-4.el10_0.1

openjpeg2-tools

2.5.2-4.el10_0.1

Oracle Linux x86_64

openjpeg2

2.5.2-4.el10_0.1

openjpeg2-devel

2.5.2-4.el10_0.1

openjpeg2-tools

2.5.2-4.el10_0.1

Связанные CVE

Связанные уязвимости

ubuntu
23 дня назад

OpenJPEG is an open-source JPEG 2000 codec. In OpenJPEG 2.5.3 and earlier, a call to opj_jp2_read_header may lead to OOB heap memory write when the data stream p_stream is too short and p_image is not initialized.

CVSS3: 8
redhat
23 дня назад

OpenJPEG is an open-source JPEG 2000 codec. In OpenJPEG 2.5.3 and earlier, a call to opj_jp2_read_header may lead to OOB heap memory write when the data stream p_stream is too short and p_image is not initialized.

nvd
23 дня назад

OpenJPEG is an open-source JPEG 2000 codec. In OpenJPEG 2.5.3 and earlier, a call to opj_jp2_read_header may lead to OOB heap memory write when the data stream p_stream is too short and p_image is not initialized.

debian
23 дня назад

OpenJPEG is an open-source JPEG 2000 codec. In OpenJPEG 2.5.3 and earl ...