4.3
CVSSv2

CVE-2016-9115

Published: 30/10/2016 Updated: 09/09/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

uclouvain openjpeg 2.1.2

Vendor Advisories

Debian Bug report logs - #844554 openjpeg2: CVE-2016-9115 Package: src:openjpeg2; Maintainer for src:openjpeg2 is Debian PhotoTools Maintainers <pkg-phototools-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 16 Nov 2016 20:27:11 UTC Severity: important Tags: fixed-upst ...
Debian Bug report logs - #844556 openjpeg2: CVE-2016-9117 Package: src:openjpeg2; Maintainer for src:openjpeg2 is Debian PhotoTools Maintainers <pkg-phototools-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 16 Nov 2016 20:33:02 UTC Severity: important Tags: fixed-upst ...
Debian Bug report logs - #844555 openjpeg2: CVE-2016-9116 Package: src:openjpeg2; Maintainer for src:openjpeg2 is Debian PhotoTools Maintainers <pkg-phototools-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 16 Nov 2016 20:27:22 UTC Severity: important Tags: fixed-upst ...
Debian Bug report logs - #844552 openjpeg2: CVE-2016-9113 Package: src:openjpeg2; Maintainer for src:openjpeg2 is Debian PhotoTools Maintainers <pkg-phototools-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 16 Nov 2016 20:27:04 UTC Severity: important Tags: security, ...
Debian Bug report logs - #844553 openjpeg2: CVE-2016-9114 Package: src:openjpeg2; Maintainer for src:openjpeg2 is Debian PhotoTools Maintainers <pkg-phototools-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 16 Nov 2016 20:27:08 UTC Severity: important Tags: security, ...
Heap Buffer Over-read in function imagetotga of convertc(jp2):942 in OpenJPEG 212 Impact is Denial of Service Someone must open a crafted j2k file ...
A heap buffer over-read has been discovered in the imagetotga function of convertc(jp2):942 in OpenJPEG 212 Opening a specially crafted j2k file is leading to application crash ...