Search CVE reports


Toggle filters

71 – 79 of 79 results


CVE-2016-7163

Medium priority

Some fixes available 8 of 10

Integer overflow in the opj_pi_create_decode function in pi.c in OpenJPEG allows remote attackers to execute arbitrary code via a crafted JP2 file, which triggers an out-of-bounds read or write.

2 affected packages

openjpeg, openjpeg2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg Not in release
openjpeg2 Fixed
Show less packages

CVE-2015-8871

Medium priority

Some fixes available 1 of 5

Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors.

2 affected packages

openjpeg, openjpeg2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg Not in release
openjpeg2 Not affected
Show less packages

CVE-2016-5159

Medium priority

Some fixes available 10 of 16

Multiple integer overflows in OpenJPEG, as used in PDFium in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allow remote attackers to cause a denial of service (heap-based buffer overflow)...

4 affected packages

openjpeg2, oxide-qt, chromium-browser, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg2 Not affected
oxide-qt Not in release
chromium-browser Fixed
openjpeg Not in release
Show less packages

CVE-2016-5158

Medium priority

Some fixes available 10 of 16

Multiple integer overflows in the opj_tcd_init_tile function in tcd.c in OpenJPEG, as used in PDFium in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allow remote attackers to cause a...

4 affected packages

oxide-qt, chromium-browser, openjpeg, openjpeg2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
oxide-qt Not in release
chromium-browser Fixed
openjpeg Not in release
openjpeg2 Not affected
Show less packages

CVE-2016-5139

Medium priority

Some fixes available 10 of 16

Multiple integer overflows in the opj_tcd_init_tile function in tcd.c in OpenJPEG, as used in PDFium in Google Chrome before 52.0.2743.116, allow remote attackers to cause a denial of service (heap-based buffer overflow) or...

4 affected packages

openjpeg, openjpeg2, oxide-qt, chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg Not in release
openjpeg2 Not affected
oxide-qt Not in release
chromium-browser Fixed
Show less packages

CVE-2016-1924

Low priority

Some fixes available 1 of 5

The opj_tgt_reset function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image.

2 affected packages

openjpeg, openjpeg2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg Not in release
openjpeg2 Not affected
Show less packages

CVE-2016-1923

Low priority

Some fixes available 1 of 5

Heap-based buffer overflow in the opj_j2k_update_image_data function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image.

2 affected packages

openjpeg, openjpeg2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg Not in release Not in release Not in release
openjpeg2 Not affected Not affected Not affected
Show less packages

CVE-2014-7947

Medium priority

Some fixes available 24 of 50

OpenJPEG before r2944, as used in PDFium in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PDF document, related to j2k.c, jp2.c, pi.c, t1.c, t2.c, and tcd.c.

7 affected packages

gdcm, insighttoolkit4, chromium-browser, openjpeg, openjpeg2...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gdcm Not affected Not affected Not affected Not affected
insighttoolkit4 Not in release Not affected Not affected Not affected
chromium-browser Fixed Fixed Fixed Fixed
openjpeg Not in release Not in release Not in release Not in release
openjpeg2 Not affected Not affected Not affected Not affected
oxide-qt Not in release Not in release Not in release Not in release
vxl Not in release Not in release Not in release Not in release
Show all 7 packages Show less packages

CVE-2014-7945

Medium priority

Some fixes available 24 of 50

OpenJPEG before r2908, as used in PDFium in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PDF document, related to j2k.c, jp2.c, and t2.c.

7 affected packages

gdcm, insighttoolkit4, chromium-browser, openjpeg, openjpeg2...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gdcm Not affected Not affected Not affected Not affected
insighttoolkit4 Not in release Not affected Not affected Not affected
chromium-browser Fixed Fixed Fixed Fixed
openjpeg Not in release Not in release Not in release Not in release
openjpeg2 Not affected Not affected Not affected Not affected
oxide-qt Not in release Not in release Not in release Not in release
vxl Not in release Not in release Not in release Not in release
Show all 7 packages Show less packages