A heap-buffer overflow was found in the way openjpeg2 handled certain PNG format files. An attacker could use this flaw to cause an application crash or in some cases execute arbitrary code with the permission of the user running such an application.
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
Name | Vendor | Start Version | End Version |
---|---|---|---|
Openjpeg | Uclouvain | * | 1.5.1 (including) |
Openjpeg | Uclouvain | 2.0.0 (including) | 2.4.0 (excluding) |
Blender | Ubuntu | trusty | * |
Ghostscript | Ubuntu | bionic | * |
Ghostscript | Ubuntu | trusty | * |
Ghostscript | Ubuntu | xenial | * |
Insighttoolkit4 | Ubuntu | trusty | * |
Openjpeg2 | Ubuntu | bionic | * |
Openjpeg2 | Ubuntu | devel | * |
Openjpeg2 | Ubuntu | focal | * |
Openjpeg2 | Ubuntu | groovy | * |
Openjpeg2 | Ubuntu | hirsute | * |
Openjpeg2 | Ubuntu | impish | * |
Openjpeg2 | Ubuntu | jammy | * |
Openjpeg2 | Ubuntu | kinetic | * |
Openjpeg2 | Ubuntu | lunar | * |
Openjpeg2 | Ubuntu | mantic | * |
Openjpeg2 | Ubuntu | noble | * |
Openjpeg2 | Ubuntu | oracular | * |
Openjpeg2 | Ubuntu | upstream | * |
Openjpeg2 | Ubuntu | xenial | * |
Qtwebengine-opensource-src | Ubuntu | devel | * |
Qtwebengine-opensource-src | Ubuntu | esm-apps/focal | * |
Qtwebengine-opensource-src | Ubuntu | esm-apps/jammy | * |
Qtwebengine-opensource-src | Ubuntu | esm-apps/noble | * |
Qtwebengine-opensource-src | Ubuntu | focal | * |
Qtwebengine-opensource-src | Ubuntu | groovy | * |
Qtwebengine-opensource-src | Ubuntu | hirsute | * |
Qtwebengine-opensource-src | Ubuntu | impish | * |
Qtwebengine-opensource-src | Ubuntu | jammy | * |
Qtwebengine-opensource-src | Ubuntu | kinetic | * |
Qtwebengine-opensource-src | Ubuntu | lunar | * |
Qtwebengine-opensource-src | Ubuntu | mantic | * |
Qtwebengine-opensource-src | Ubuntu | noble | * |
Qtwebengine-opensource-src | Ubuntu | oracular | * |
Texmaker | Ubuntu | trusty | * |
Red Hat Enterprise Linux 8 | RedHat | openjpeg2-0:2.4.0-4.el8 | * |