MGASA-2014-0182
Dashboard / Vulnerabilities / MGASA-2014-0182
Summary: Updated openjpeg packages fix security vulnerability
Details: Updated openjpeg packages fix security vulnerability: A heap-based buffer overflow was found in the way openjpeg parsed certain image files from a JPEG2000 image. If a specially-crafted image were opened by an application linked against OpenJPEG, it could cause the application to crash or, potentially, execute arbitrary code with the privileges of the user running the application (CVE-2014-0158).
References: https://advisories.mageia.org/MGASA-2014-0182.html, https://lists.fedoraproject.org/pipermail/package-announce/2014-April/131474.html, https://bugs.mageia.org/show_bug.cgi?id=13218
Affected packages
Package
Name: openjpeg
Purl: pkg:rpm/mageia/openjpeg?arch=source&distro=mageia-3
Affected ranges
Type: ECOSYSTEM
Events:
