UBUNTU-CVE-2021-29338
Dashboard / Vulnerabilities / UBUNTU-CVE-2021-29338
UBUNTU-CVE-2021-29338
Summary:
Details: Integer Overflow in OpenJPEG v2.4.0 allows remote attackers to crash the application, causing a Denial of Service (DoS). This occurs when the attacker uses the command line option "-ImgDir" on a directory that contains 1048576 files.
References: https://ubuntu.com/security/CVE-2021-29338, https://github.com/uclouvain/openjpeg/pull/1346, https://github.com/uclouvain/openjpeg/pull/1395, https://github.com/uclouvain/openjpeg/pull/1396, https://github.com/uclouvain/openjpeg/pull/1397, https://github.com/uclouvain/openjpeg/pull/1398, https://www.cve.org/CVERecord?id=CVE-2021-29338, https://ubuntu.com/security/notices/USN-7083-1
Affected packages
Package
Name: openjpeg2
Purl: pkg:deb/ubuntu/openjpeg2?arch=source&distro=esm-apps%2Fxenial
Affected ranges
Type: ECOSYSTEM
Events:
