CVE-2020-6851
13.01.2020, 06:15
OpenJPEG through 2.3.1 has a heap-based buffer overflow in opj_t1_clbl_decode_processor in openjp2/t1.c because of lack of opj_j2k_update_image_dimensions validation.Enginsight
Vendor | Product | Version |
---|---|---|
uclouvain | openjpeg | 𝑥 ≤ 2.3.1 |
debian | debian_linux | 8.0 |
debian | debian_linux | 9.0 |
debian | debian_linux | 10.0 |
redhat | enterprise_linux | 8.0 |
redhat | enterprise_linux_desktop | 7.0 |
redhat | enterprise_linux_eus | 7.7 |
redhat | enterprise_linux_eus | 8.1 |
redhat | enterprise_linux_eus | 8.2 |
redhat | enterprise_linux_eus | 8.4 |
redhat | enterprise_linux_server | 7.0 |
redhat | enterprise_linux_server_aus | 7.7 |
redhat | enterprise_linux_server_aus | 8.2 |
redhat | enterprise_linux_server_aus | 8.4 |
redhat | enterprise_linux_server_tus | 7.7 |
redhat | enterprise_linux_server_tus | 8.2 |
redhat | enterprise_linux_server_tus | 8.4 |
redhat | enterprise_linux_workstation | 7.0 |
oracle | outside_in_technology | 8.5.4 |
oracle | outside_in_technology | 8.5.5 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
blender |
| ||||||||||||||||||||||||||||
ghostscript |
| ||||||||||||||||||||||||||||
insighttoolkit4 |
| ||||||||||||||||||||||||||||
openjpeg |
| ||||||||||||||||||||||||||||
openjpeg2 |
| ||||||||||||||||||||||||||||
qtwebengine-opensource-src |
| ||||||||||||||||||||||||||||
texmaker |
|
Common Weakness Enumeration
References