Related Vulnerabilities: CVE-2016-9115  

A heap buffer over-read has been discovered in the imagetotga function of convert.c(jp2):942 in OpenJPEG 2.1.2. Opening a specially crafted j2k file is leading to application crash.

Severity Medium

Remote Yes

Type Denial of service

Description

A heap buffer over-read has been discovered in the imagetotga function of convert.c(jp2):942 in OpenJPEG 2.1.2. Opening a specially crafted j2k file is leading to application crash.

AVG-54 openjpeg2 2.1.2-2 2.2.0-1 High Fixed FS#54860

https://github.com/uclouvain/openjpeg/issues/858