« List of all CVEs

CVE-2020-27844

Published: 1/5/2021 Last updated: 8/4/2024 Reserved: 10/27/2020

A flaw was found in openjpeg's src/lib/openjp2/t2.c in versions prior to 2.4.0. This flaw allows an attacker to provide crafted input to openjpeg during conversion and encoding, causing an out-of-bounds write. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Opam packages affected (1)

grib

Products affected (1)

Product Vendor Version
openjpeg n/a 12.2.1.4.0

References (10)