Vulnerabilities
Vulnerable Software
Uclouvain:  >> Openjpeg  Security Vulnerabilities
The tcd_free_encode function in tcd.c in OpenJPEG 1.3 through 1.5 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted tile information in a Gray16 TIFF image, which causes insufficient memory to be allocated and leads to an "invalid free."
CVSS Score
6.8
EPSS Score
0.045
Published
2012-07-18
The JPEG 2000 codec (jp2.c) in OpenJPEG before 1.5 allows remote attackers to execute arbitrary code via a crafted palette index in a CMAP record of a JPEG image, which triggers memory corruption, aka "out-of heap-based buffer write."
CVSS Score
9.3
EPSS Score
0.038
Published
2012-04-11


Contact Us

Shodan ® - All rights reserved