USN-4497-1
Dashboard / Vulnerabilities / USN-4497-1
USN-4497-1
Summary: OpenJPEG vulnerabilities
Details: It was discovered that OpenJPEG incorrectly handled certain image files. A remote attacker could possibly use this issue to cause a denial of service. (CVE-2016-9112) It was discovered that OpenJPEG did not properly handle certain input. If OpenJPEG were supplied with specially crafted input, it could be made to crash or potentially execute arbitrary code. (CVE-2018-20847, CVE-2018-21010, CVE-2020-6851, CVE-2020-8112, CVE-2020-15389) It was discovered that OpenJPEG incorrectly handled certain BMP files. A remote attacker could possibly use this issue to cause a denial of service. (CVE-2019-12973)
References: https://ubuntu.com/security/notices/USN-4497-1, https://ubuntu.com/security/CVE-2016-9112, https://ubuntu.com/security/CVE-2018-20847, https://ubuntu.com/security/CVE-2018-21010, https://ubuntu.com/security/CVE-2019-12973, https://ubuntu.com/security/CVE-2020-6851, https://ubuntu.com/security/CVE-2020-8112, https://ubuntu.com/security/CVE-2020-15389
Affected packages
Package
Name: openjpeg2
Purl: pkg:deb/ubuntu/[email protected]+deb9u5build0.16.04.1?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
