A NULL pointer dereference flaw was found in the way openjpeg 2.1.2 decoded certain input images. Due to a logic error in the code responsible for decoding the input image, an application using openjpeg to process image data could crash when processing a crafted image.
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Openjpeg | Uclouvain | 2.1.2 (including) | 2.1.2 (including) |
| Openjpeg | Ubuntu | esm-apps/xenial | * |
| Openjpeg | Ubuntu | esm-infra-legacy/trusty | * |
| Openjpeg | Ubuntu | trusty | * |
| Openjpeg | Ubuntu | trusty/esm | * |
| Openjpeg | Ubuntu | upstream | * |
| Openjpeg | Ubuntu | xenial | * |
| Openjpeg2 | Ubuntu | artful | * |
| Openjpeg2 | Ubuntu | esm-apps/xenial | * |
| Openjpeg2 | Ubuntu | upstream | * |
| Openjpeg2 | Ubuntu | xenial | * |
| Openjpeg2 | Ubuntu | yakkety | * |
| Openjpeg2 | Ubuntu | zesty | * |