Multiple integer overflows in lib/openjp3d/jp3d.c in OpenJPEG before 1.5.2 allow remote attackers to have unspecified impact and vectors, which trigger a heap-based buffer overflow.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/62363 | vdb entry |
http://secunia.com/advisories/57285 | third party advisory vendor advisory |
http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS | |
http://seclists.org/oss-sec/2013/q3/593 | mailing list |