CVE-2017-17480
08.12.2017, 19:29
In OpenJPEG 2.3.0, a stack-based buffer overflow was discovered in the pgxtovolume function in jp3d/convert.c. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly remote code execution.Enginsight
| Vendor | Product | Version |
|---|---|---|
| uclouvain | openjpeg | 2.3.0 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| canonical | ubuntu_linux | 18.04 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| openjpeg |
| ||||||||||||||||||||
| openjpeg2 |
|
Common Weakness Enumeration
References