CVE-2015-1273

EUVD-2015-1414
Heap-based buffer overflow in j2k.c in OpenJPEG before r3002, as used in PDFium in Google Chrome before 44.0.2403.89, allows remote attackers to cause a denial of service or possibly have unspecified other impact via invalid JPEG2000 data in a PDF document.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 85%
Affected Products (NVD)
VendorProductVersion
opensuseopensuse
13.1
opensuseopensuse
13.2
redhatenterprise_linux_desktop_supplementary
6.0
redhatenterprise_linux_server_supplementary
6.0
redhatenterprise_linux_server_supplementary_eus
6.7z:z
redhatenterprise_linux_workstation_supplementary
6.0
googlechrome
𝑥
≤ 43.0.2357.134
debiandebian_linux
8.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
chromium-browser
artful
Fixed 44.0.2403.89-0ubuntu1.1195
released
bionic
Fixed 44.0.2403.89-0ubuntu1.1195
released
cosmic
Fixed 44.0.2403.89-0ubuntu1.1195
released
disco
Fixed 44.0.2403.89-0ubuntu1.1195
released
eoan
Fixed 44.0.2403.89-0ubuntu1.1195
released
focal
Fixed 44.0.2403.89-0ubuntu1.1195
released
groovy
Fixed 44.0.2403.89-0ubuntu1.1195
released
hirsute
Fixed 44.0.2403.89-0ubuntu1.1195
released
impish
Fixed 44.0.2403.89-0ubuntu1.1195
released
jammy
Fixed 44.0.2403.89-0ubuntu1.1195
released
kinetic
Fixed 44.0.2403.89-0ubuntu1.1195
released
lunar
Fixed 44.0.2403.89-0ubuntu1.1195
released
mantic
Fixed 44.0.2403.89-0ubuntu1.1195
released
noble
Fixed 44.0.2403.89-0ubuntu1.1195
released
precise
ignored
trusty
Fixed 44.0.2403.89-0ubuntu0.14.04.1.1095
released
utopic
ignored
vivid
Fixed 44.0.2403.89-0ubuntu0.15.04.1.1177
released
wily
Fixed 44.0.2403.89-0ubuntu1.1195
released
xenial
Fixed 44.0.2403.89-0ubuntu1.1195
released
yakkety
Fixed 44.0.2403.89-0ubuntu1.1195
released
zesty
Fixed 44.0.2403.89-0ubuntu1.1195
released
openjpeg
artful
dne
bionic
dne
cosmic
dne
disco
dne
eoan
dne
focal
dne
groovy
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
precise
ignored
trusty
deferred
vivid
ignored
wily
ignored
xenial
deferred
yakkety
ignored
zesty
dne
oxide-qt
artful
not-affected
bionic
dne
cosmic
dne
disco
dne
eoan
dne
focal
dne
groovy
dne
hirsute
dne
impish
dne
jammy
dne
kinetic
dne
lunar
dne
mantic
dne
noble
dne
precise
dne
trusty
dne
utopic
not-affected
vivid
not-affected
wily
not-affected
xenial
not-affected
yakkety
not-affected
zesty
not-affected