7.8
CVSSv3

CVE-2020-27844

Published: 05/01/2021 Updated: 07/11/2023
CVSS v2 Base Score: 8.3 | Impact Score: 8.5 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 739
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:C

Vulnerability Summary

A flaw was found in openjpeg's src/lib/openjp2/t2.c in versions before 2.4.0. This flaw allows an malicious user to provide crafted input to openjpeg during conversion and encoding, causing an out-of-bounds write. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

uclouvain openjpeg

debian debian linux 9.0

oracle outside in technology 8.5.5

Vendor Advisories

A heap-based buffer overflow was discovered in lib/openjp2/t2c:973 in the current master (commit 18b1138fbe3bb0ae4aa2bf1369f9430a8ec6fa00) of OpenJPEG ...
The Chrome team is delighted to announce the promotion of Chrome 89 to the stable channel for Windows, Mac and Linux This will roll out over the coming days/weeksChrome 890438972 contains a number of fixes and improvements -- a list of changes is available in the log Watch out for upcoming Chrome and Chromium blog pos ...