10
CVSSv2

CVE-2013-4290

Published: 18/04/2014 Updated: 09/09/2020
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in OpenJPEG prior to 1.5.2 allows remote malicious users to have unspecified impact via unknown vectors to (1) lib/openjp3d/opj_jp3d_compress.c, (2) bin/jp3d/convert.c, or (3) lib/openjp3d/event.c.

Vulnerable Product Search on Vulmon Subscribe to Product

uclouvain openjpeg 1.3

uclouvain openjpeg 1.5

uclouvain openjpeg 1.4

uclouvain openjpeg

Vendor Advisories

Debian Bug report logs - #722540 openjpeg: CVE-2013-4289 CVE-2013-4290 Package: openjpeg; Maintainer for openjpeg is Debian PhotoTools Maintainers <pkg-phototools-devel@listsaliothdebianorg>; Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Thu, 12 Sep 2013 06:03:02 UTC Severity: grave Tags: security Found ...
Stack-based buffer overflow in OpenJPEG before 152 allows remote attackers to have unspecified impact via unknown vectors to (1) lib/openjp3d/opj_jp3d_compressc, (2) bin/jp3d/convertc, or (3) lib/openjp3d/eventc ...