Логотип exploitDog
bind:"BDU:2020-05034" OR bind:"CVE-2020-15389"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2020-05034" OR bind:"CVE-2020-15389"

Количество 11

Количество 11

fstec логотип

BDU:2020-05034

почти 5 лет назад

Уязвимость компонента jp2/opj_decompress.c библиотеки для кодирования и декодирования изображений OpenJPEG, позволяющая нарушителю раскрыть защищаемую информацию или вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2020-15389

почти 5 лет назад

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2020-15389

около 5 лет назад

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-15389

почти 5 лет назад

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2020-15389

почти 5 лет назад

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free th ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-7fhh-p939-wc2j

около 3 лет назад

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1296-1

около 3 лет назад

Security update for openjpeg

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1252-1

около 3 лет назад

Security update for openjpeg2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1129-1

около 3 лет назад

Security update for openjpeg2

EPSS: Низкий
rocky логотип

RLSA-2021:4251

больше 3 лет назад

Moderate: openjpeg2 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2021-4251

больше 3 лет назад

ELSA-2021-4251: openjpeg2 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2020-05034

Уязвимость компонента jp2/opj_decompress.c библиотеки для кодирования и декодирования изображений OpenJPEG, позволяющая нарушителю раскрыть защищаемую информацию или вызвать отказ в обслуживании

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
ubuntu логотип
CVE-2020-15389

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
redhat логотип
CVE-2020-15389

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.

CVSS3: 6.5
0%
Низкий
около 5 лет назад
nvd логотип
CVE-2020-15389

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
debian логотип
CVE-2020-15389

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free th ...

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
github логотип
GHSA-7fhh-p939-wc2j

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.

CVSS3: 6.5
0%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1296-1

Security update for openjpeg

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1252-1

Security update for openjpeg2

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1129-1

Security update for openjpeg2

около 3 лет назад
rocky логотип
RLSA-2021:4251

Moderate: openjpeg2 security update

больше 3 лет назад
oracle-oval логотип
ELSA-2021-4251

ELSA-2021-4251: openjpeg2 security update (MODERATE)

больше 3 лет назад

Уязвимостей на страницу