Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-5140

Опубликовано: 07 авг. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5
CVSS3: 9.8

Описание

Heap-based buffer overflow in the opj_j2k_read_SQcd_SQcc function in j2k.c in OpenJPEG, as used in PDFium in Google Chrome before 52.0.2743.116, allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JPEG 2000 data.

РелизСтатусПримечание
devel

released

53.0.2785.143-0ubuntu1.1307
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [52.0.2743.116-0ubuntu0.14.04.1.1134]]
precise

ignored

trusty

released

52.0.2743.116-0ubuntu0.14.04.1.1134
trusty/esm

DNE

trusty was released [52.0.2743.116-0ubuntu0.14.04.1.1134]
upstream

released

52.0.2743.116-1
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

released

52.0.2743.116-0ubuntu0.16.04.1.1250
yakkety

released

53.0.2785.143-0ubuntu1.1307

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
esm-infra/xenial

not-affected

precise

DNE

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

vivid/stable-phone-overlay

not-affected

vivid/ubuntu-core

DNE

xenial

not-affected

Показывать по

EPSS

Процентиль: 85%
0.02379
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 8.8
redhat
больше 9 лет назад

Heap-based buffer overflow in the opj_j2k_read_SQcd_SQcc function in j2k.c in OpenJPEG, as used in PDFium in Google Chrome before 52.0.2743.116, allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JPEG 2000 data.

CVSS3: 9.8
nvd
больше 9 лет назад

Heap-based buffer overflow in the opj_j2k_read_SQcd_SQcc function in j2k.c in OpenJPEG, as used in PDFium in Google Chrome before 52.0.2743.116, allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JPEG 2000 data.

CVSS3: 9.8
debian
больше 9 лет назад

Heap-based buffer overflow in the opj_j2k_read_SQcd_SQcc function in j ...

CVSS3: 9.8
github
больше 3 лет назад

Heap-based buffer overflow in the opj_j2k_read_SQcd_SQcc function in j2k.c in OpenJPEG, as used in PDFium in Google Chrome before 52.0.2743.116, allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JPEG 2000 data.

EPSS

Процентиль: 85%
0.02379
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3