A heap-based buffer overflow was discovered in the opj_t2_encode_packet function in lib/openjp2/t2.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly unspecified other impact.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://security.gentoo.org/glsa/201710-26 | third party advisory vendor advisory |
https://github.com/uclouvain/openjpeg/issues/992 | issue tracking third party advisory patch |
http://www.debian.org/security/2017/dsa-4013 | third party advisory vendor advisory |
http://www.securityfocus.com/bid/100550 | vdb entry third party advisory |
https://github.com/uclouvain/openjpeg/commit/c535531f03369623b9b833ef41952c62257b507e | issue tracking third party advisory patch |
https://blogs.gentoo.org/ago/2017/08/28/openjpeg-heap-based-buffer-overflow-in-opj_t2_encode_packet-t2-c/ | vdb entry third party advisory patch |