Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a crafted PDF.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Openjpeg | Uclouvain | * | 2.1.1 (excluding) |
Openjpeg | Ubuntu | upstream | * |
Openjpeg2 | Ubuntu | upstream | * |
Openjpeg2 | Ubuntu | xenial | * |